====================================== | [ 631.256396][ C3] 1 lock held by swapper/3/0: | [ 631.256583][ C3] #0: ffffffffb938d440 (rcu_callback){....}-{0:0}, at: rcu_do_batch (./include/linux/rcupdate.h:331 kernel/rcu/tree.c:2570) | [ 631.256911][ C3] | [ 631.256911][ C3] stack backtrace: [ 631.257144][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 631.257147][ C3] Call Trace: [ 631.257150][ C3] [ 631.257153][ C3] dump_stack_lvl (lib/dump_stack.c:123) [ 631.257164][ C3] print_usage_bug.part.0 (kernel/locking/lockdep.c:4048) [ 631.257169][ C3] mark_lock_irq (kernel/locking/lockdep.c:4013 kernel/locking/lockdep.c:4059 kernel/locking/lockdep.c:4270) [ 631.257173][ C3] ? stack_depot_save_flags (lib/stackdepot.c:552 lib/stackdepot.c:619) [ 631.257181][ C3] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 631.257186][ C3] mark_lock (kernel/locking/lockdep.c:4756) [ 631.257190][ C3] mark_usage (kernel/locking/lockdep.c:4645) [ 631.257194][ C3] __lock_acquire (kernel/locking/lockdep.c:5194) [ 631.257197][ C3] ? pv_native_safe_halt (arch/x86/kernel/paravirt.c:82) [ 631.257201][ C3] ? default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:743) [ 631.257204][ C3] ? default_idle_call (./include/linux/cpuidle.h:143 kernel/sched/idle.c:118) [ 631.257207][ C3] ? cpuidle_idle_call (kernel/sched/idle.c:186) [ 631.257216][ C3] lock_acquire.part.0 (kernel/locking/lockdep.c:473 kernel/locking/lockdep.c:5873) [ 631.257219][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 631.257223][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 631.257230][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 631.257233][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 631.257238][ C3] _raw_spin_lock (./include/linux/spinlock_api_smp.h:134 kernel/locking/spinlock.c:154) [ 631.257240][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 631.257244][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 631.257247][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 631.257251][ C3] ? trace_rcu_segcb_stats (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745 ./include/trace/events/rcu.h:537) [ 631.257255][ C3] ? kasan_quarantine_put (mm/kasan/quarantine.c:234 (discriminator 1)) [ 631.257259][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 631.257263][ C3] ref_tracker_dir_exit (lib/ref_tracker.c:54 lib/ref_tracker.c:223) [ 631.257267][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 631.257270][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 631.257273][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 631.257276][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 631.257279][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 631.257282][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 631.257298][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 631.257301][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 631.257305][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 631.257309][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 631.257317][ C3] ? do_idle (kernel/sched/idle.c:325) [ 631.257320][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 631.257323][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 631.257336][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 631.257340][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 631.257343][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 631.257347][ C3] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 631.257351][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 631.257354][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 631.257358][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 631.257361][ C3] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 631.257365][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 631.257369][ C3] handle_softirqs (kernel/softirq.c:579) [ 631.257375][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 631.257378][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 631.257381][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 631.257384][ C3] [ 631.257385][ C3] [ 631.257386][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 631.257398][ C3] RIP: 0010:pv_native_safe_halt (arch/x86/kernel/paravirt.c:82) [ 631.257401][ C3] Code: 54 ce 00 e9 d3 58 02 00 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 66 90 0f 00 2d 33 07 1f 00 fb f4 cc cc cc cc 66 2e 0f 1f 84 00 00 00 00 00 66 90 90 90 90 90 90 All code ======== 0: 54 push %rsp 1: ce (bad) 2: 00 e9 add %ch,%cl 4: d3 58 02 rcrl %cl,0x2(%rax) 7: 00 0f add %cl,(%rdi) 9: 1f (bad) a: 00 90 90 90 90 90 add %dl,-0x6f6f6f70(%rax) 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: f3 0f 1e fa endbr64 1f: 66 90 xchg %ax,%ax 21: 0f 00 2d 33 07 1f 00 verw 0x1f0733(%rip) # 0x1f075b 28: fb sti 29: f4 hlt 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 36: 00 00 00 39: 66 90 xchg %ax,%ax 3b: 90 nop 3c: 90 nop 3d: 90 nop 3e: 90 nop 3f: 90 nop Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) c: 00 00 00 f: 66 90 xchg %ax,%ax 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop [ 631.257404][ C3] RSP: 0018:ffffc90000157de8 EFLAGS: 00000242 [ 631.257411][ C3] RAX: 0000000000c39b01 RBX: 1ffff9200002afc1 RCX: ffffffffb7ca43e9 [ 631.257413][ C3] RDX: 0000000000000000 RSI: ffffffffb892ba5f RDI: ffffffffb805cf00 [ 631.257415][ C3] RBP: 0000000000000000 R08: 0000000000000001 R09: ffffed100d9f6702 [ 631.257417][ C3] R10: ffff88806cfb3813 R11: ffffffffb9011288 R12: 0000000000000000 [ 631.257419][ C3] R13: ffff888001b645c0 R14: dffffc0000000000 R15: 0000000000000000 [ 631.257423][ C3] ? ct_kernel_exit.constprop.0 (kernel/context_tracking.c:146) [ 631.257429][ C3] default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:743) [ 631.257432][ C3] default_idle_call (./include/linux/cpuidle.h:143 kernel/sched/idle.c:118) [ 631.257435][ C3] cpuidle_idle_call (kernel/sched/idle.c:186) [ 631.257439][ C3] ? __pfx_cpuidle_idle_call (kernel/sched/idle.c:168) [ 631.257443][ C3] ? tsc_verify_tsc_adjust (arch/x86/kernel/tsc_sync.c:60) [ 631.257452][ C3] do_idle (kernel/sched/idle.c:325) [ 631.257455][ C3] cpu_startup_entry (kernel/sched/idle.c:422 (discriminator 1)) [ 631.257459][ C3] start_secondary (arch/x86/kernel/smpboot.c:203 arch/x86/kernel/smpboot.c:283) [ 631.257462][ C3] ? __pfx_start_secondary (arch/x86/kernel/smpboot.c:233) [ 631.257467][ C3] common_startup_64 (arch/x86/kernel/head_64.S:419) | [ 656.670135][ C3] hardirqs last enabled at (0): 0x0 | [ 656.670142][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 656.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 656.670163][ C3] softirqs last disabled at (0): 0x0 [ 656.670175][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 656.670178][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 656.670185][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 656.670188][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 656.670192][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 656.670194][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 656.670196][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 656.670198][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 656.670200][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 656.670202][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 656.670204][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 656.670208][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 656.670210][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 656.670211][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 656.670213][ C3] PKRU: 55555554 [ 656.670214][ C3] Call Trace: [ 656.670219][ C3] [ 656.670220][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 656.670230][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 656.670238][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 656.670246][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 656.670249][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 656.670255][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 656.670261][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 656.670264][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 656.670269][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 656.670272][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 656.670278][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 656.670281][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 656.670283][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 656.670286][ C3] ? xas_alloc (lib/xarray.c:378) [ 656.670293][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 656.670299][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 656.670301][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 656.670306][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 656.670311][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 656.670316][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 656.670321][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670327][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 656.670339][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 656.670346][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670349][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 656.670352][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 656.670356][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 656.670359][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 656.670362][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 656.670370][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 656.670373][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 656.670376][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 656.670380][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 656.670385][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 656.670389][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 656.670392][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 656.670396][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670399][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 656.670404][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 656.670408][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 656.670411][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 656.670417][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 656.670420][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670424][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 656.670428][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 656.670433][ C3] handle_softirqs (kernel/softirq.c:579) [ 656.670439][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 656.670443][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 656.670446][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 656.670449][ C3] [ 656.670450][ C3] [ 656.670452][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 656.670459][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 656.670462][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 656.670464][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 656.670467][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 656.670468][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 656.670470][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 656.670472][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 656.670473][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 656.670477][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 656.670483][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 656.670488][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 656.670492][ C3] ? xas_alloc (lib/xarray.c:378) [ 656.670497][ C3] ? xas_alloc (lib/xarray.c:378) [ 656.670499][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 656.670504][ C3] ? xas_alloc (lib/xarray.c:378) [ 656.670506][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 656.670511][ C3] xas_alloc (lib/xarray.c:378) [ 656.670516][ C3] xas_create (lib/xarray.c:685) [ 656.670523][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 656.670527][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 656.670531][ C3] __xa_store (lib/xarray.c:1703) [ 656.670535][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 656.670540][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 656.670543][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 656.670546][ C3] ? xa_store (lib/xarray.c:1734) [ 656.670551][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 656.670555][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 656.670558][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 656.670563][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 656.670566][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 656.670568][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670572][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 656.670575][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 656.670580][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 656.670583][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 656.670588][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 656.670592][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 656.670597][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 656.670609][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 656.670613][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 656.670627][ C3] ksys_unshare (kernel/fork.c:3121) [ 656.670632][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 656.670635][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 656.670639][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 656.670642][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 656.670645][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 656.670654][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 656.670658][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 656.670663][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 656.670667][ C3] RIP: 0033:0x7f439756d93b [ 656.670672][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 656.670674][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 656.670677][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 656.670679][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 656.670681][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 656.670682][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 656.670684][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 658.011430][ C3] rcu: INFO: rcu_preempt self-detected stall on CPU | [ 658.011966][ C3] rcu: 3-....: (25966 ticks this GP) idle=10a4/1/0x4000000000000000 softirq=224221/224227 fqs=6487 | [ 658.012445][ C3] rcu: (t=26000 jiffies g=359693 q=1397 ncpus=4) | [ 658.012754][ C3] Tainted: [L]=SOFTLOCKUP [ 658.012756][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 658.012759][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 658.012784][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 658.012790][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 658.012795][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 658.012798][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 658.012801][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 658.012802][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 658.012805][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 658.012807][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 658.012809][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 658.012813][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 658.012815][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 658.012816][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 658.012818][ C3] PKRU: 55555554 [ 658.012819][ C3] Call Trace: [ 658.012821][ C3] [ 658.012822][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 658.012835][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 658.012841][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 658.012844][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 658.012855][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 658.012866][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 658.012869][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 658.012876][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 658.012880][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 658.012885][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 658.012888][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 658.012891][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 658.012894][ C3] ? xas_alloc (lib/xarray.c:378) [ 658.012903][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 658.012909][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 658.012912][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 658.012919][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 658.012925][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 658.012929][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 658.012935][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.012942][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 658.012953][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 658.012961][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.012964][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 658.012967][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 658.012970][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 658.012973][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 658.012976][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 658.012989][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 658.012993][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 658.012997][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 658.013002][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 658.013008][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 658.013012][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 658.013015][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 658.013022][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.013025][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 658.013031][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 658.013036][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 658.013039][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 658.013044][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 658.013048][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.013051][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 658.013056][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 658.013060][ C3] handle_softirqs (kernel/softirq.c:579) [ 658.013066][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 658.013069][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 658.013072][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 658.013075][ C3] [ 658.013076][ C3] [ 658.013079][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 658.013086][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 658.013090][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 658.013093][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 658.013095][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 658.013098][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 658.013099][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 658.013101][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 658.013102][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 658.013106][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 658.013111][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 658.013116][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 658.013120][ C3] ? xas_alloc (lib/xarray.c:378) [ 658.013124][ C3] ? xas_alloc (lib/xarray.c:378) [ 658.013127][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 658.013130][ C3] ? xas_alloc (lib/xarray.c:378) [ 658.013133][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 658.013137][ C3] xas_alloc (lib/xarray.c:378) [ 658.013142][ C3] xas_create (lib/xarray.c:685) [ 658.013148][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 658.013152][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 658.013155][ C3] __xa_store (lib/xarray.c:1703) [ 658.013159][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 658.013163][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 658.013166][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 658.013169][ C3] ? xa_store (lib/xarray.c:1734) [ 658.013173][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 658.013177][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 658.013180][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 658.013185][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 658.013187][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 658.013190][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.013194][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 658.013197][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 658.013201][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 658.013205][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 658.013209][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 658.013213][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 658.013218][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 658.013230][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 658.013234][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 658.013245][ C3] ksys_unshare (kernel/fork.c:3121) [ 658.013254][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 658.013257][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 658.013261][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 658.013263][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 658.013267][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 658.013276][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 658.013280][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 658.013288][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 658.013291][ C3] RIP: 0033:0x7f439756d93b [ 658.013299][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 658.013302][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 658.013304][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 658.013306][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 658.013307][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 658.013310][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 658.013312][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 684.669181][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 684.669200][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 684.669203][ C1] softirqs last disabled at (0): 0x0 | [ 684.669226][ C1] Tainted: [L]=SOFTLOCKUP [ 684.669228][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 684.669234][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 684.669252][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 684.669257][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 684.669261][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 684.669264][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 684.669266][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 684.669268][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 684.669270][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 684.669273][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 684.669276][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 684.669279][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 684.669282][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 684.669284][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 684.669286][ C1] PKRU: 55555554 [ 684.669287][ C1] Call Trace: [ 684.669293][ C1] [ 684.669299][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 684.669303][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 684.669312][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 684.669319][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 684.669346][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 684.669351][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 684.669354][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 684.669357][ C1] ? xa_store (lib/xarray.c:1734) [ 684.669368][ C1] xa_store (lib/xarray.c:1734) [ 684.669374][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 684.669384][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 684.669390][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 684.669393][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 684.669396][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.669407][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.669410][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 684.669422][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 684.669426][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 684.669431][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 684.669442][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 684.669447][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 684.669462][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 684.669466][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 684.669475][ C1] ksys_unshare (kernel/fork.c:3121) [ 684.669481][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 684.669485][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 684.669492][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 684.669496][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 684.669500][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 684.669510][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 684.669514][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 684.669524][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 684.669531][ C1] RIP: 0033:0x7f439756d93b [ 684.669541][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 684.669544][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 684.669547][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 684.669550][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 684.669554][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 684.669556][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 684.669558][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 684.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 684.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 684.670147][ C3] softirqs last disabled at (0): 0x0 | [ 684.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 684.670163][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 684.670166][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 684.670174][ C3] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 684.670178][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000246 [ 684.670182][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 684.670184][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 684.670187][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 684.670189][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 684.670191][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 684.670194][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 684.670196][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 684.670200][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 684.670202][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 684.670203][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 684.670205][ C3] PKRU: 55555554 [ 684.670206][ C3] Call Trace: [ 684.670212][ C3] [ 684.670214][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 684.670225][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 684.670235][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 684.670239][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 684.670248][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 684.670258][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 684.670262][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 684.670266][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 684.670272][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 684.670277][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 684.670279][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 684.670283][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 684.670286][ C3] ? xas_alloc (lib/xarray.c:378) [ 684.670292][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 684.670297][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 684.670301][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 684.670306][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 684.670311][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 684.670318][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 684.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670330][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 684.670338][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 684.670348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670351][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 684.670355][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 684.670359][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 684.670363][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 684.670366][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 684.670381][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 684.670385][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 684.670388][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 684.670392][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 684.670400][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 684.670404][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 684.670407][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 684.670413][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670416][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 684.670421][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 684.670427][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 684.670430][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 684.670438][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 684.670442][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670446][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 684.670451][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 684.670456][ C3] handle_softirqs (kernel/softirq.c:579) [ 684.670464][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 684.670469][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 684.670473][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 684.670478][ C3] [ 684.670479][ C3] [ 684.670481][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 684.670487][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 684.670491][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 684.670495][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 684.670499][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 684.670501][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 684.670503][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 684.670505][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 684.670508][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 684.670512][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 684.670519][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 684.670526][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 684.670531][ C3] ? xas_alloc (lib/xarray.c:378) [ 684.670536][ C3] ? xas_alloc (lib/xarray.c:378) [ 684.670539][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 684.670543][ C3] ? xas_alloc (lib/xarray.c:378) [ 684.670547][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 684.670553][ C3] xas_alloc (lib/xarray.c:378) [ 684.670558][ C3] xas_create (lib/xarray.c:685) [ 684.670565][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 684.670570][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 684.670573][ C3] __xa_store (lib/xarray.c:1703) [ 684.670578][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 684.670583][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 684.670585][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 684.670588][ C3] ? xa_store (lib/xarray.c:1734) [ 684.670593][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 684.670597][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 684.670600][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 684.670605][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 684.670608][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 684.670611][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670615][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 684.670618][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 684.670623][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 684.670627][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 684.670633][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 684.670636][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 684.670641][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 684.670649][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 684.670652][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 684.670658][ C3] ksys_unshare (kernel/fork.c:3121) [ 684.670662][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 684.670666][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 684.670670][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 684.670672][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 684.670676][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 684.670682][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 684.670686][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 684.670691][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 684.670694][ C3] RIP: 0033:0x7f439756d93b [ 684.670700][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 684.670703][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 684.670706][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 684.670709][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 684.670711][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 684.670714][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 684.670716][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 712.656141][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 712.656152][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 712.656156][ C0] softirqs last disabled at (0): 0x0 | [ 712.656168][ C0] Tainted: [L]=SOFTLOCKUP [ 712.656170][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 712.656172][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 712.656183][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 712.656186][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 712.656190][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 712.656192][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 712.656194][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 712.656196][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 712.656198][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 712.656200][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 712.656202][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 712.656207][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 712.656208][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 712.656210][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 712.656211][ C0] PKRU: 55555554 [ 712.656213][ C0] Call Trace: [ 712.656217][ C0] [ 712.656221][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 712.656225][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.656231][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.656237][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 712.656245][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 712.656249][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.656252][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.656254][ C0] ? xa_store (lib/xarray.c:1734) [ 712.656262][ C0] xa_store (lib/xarray.c:1734) [ 712.656267][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 712.656274][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 712.656279][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.656282][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.656285][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.656293][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.656296][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 712.656305][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 712.656309][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 712.656314][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 712.656322][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 712.656327][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 712.656338][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 712.656342][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 712.656350][ C0] ksys_unshare (kernel/fork.c:3121) [ 712.656355][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 712.656358][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 712.656363][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 712.656367][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 712.656371][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 712.656379][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 712.656383][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 712.656389][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 712.656395][ C0] RIP: 0033:0x7f439756d93b [ 712.656399][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 712.656402][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 712.656405][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 712.656407][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 712.656409][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 712.656411][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 712.656412][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 712.669138][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 712.669147][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 712.669151][ C1] softirqs last disabled at (0): 0x0 | [ 712.669162][ C1] Tainted: [L]=SOFTLOCKUP [ 712.669164][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 712.669167][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 712.669176][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 712.669178][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 712.669182][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 712.669184][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 712.669186][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 712.669187][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 712.669189][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 712.669191][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 712.669194][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 712.669197][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 712.669199][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 712.669200][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 712.669202][ C1] PKRU: 55555554 [ 712.669203][ C1] Call Trace: [ 712.669207][ C1] [ 712.669211][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 712.669215][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.669220][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.669224][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 712.669232][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 712.669235][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.669238][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.669241][ C1] ? xa_store (lib/xarray.c:1734) [ 712.669248][ C1] xa_store (lib/xarray.c:1734) [ 712.669253][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 712.669259][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 712.669264][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.669267][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.669270][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.669276][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.669280][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 712.669288][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 712.669291][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 712.669296][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 712.669303][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 712.669308][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 712.669317][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 712.669320][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 712.669327][ C1] ksys_unshare (kernel/fork.c:3121) [ 712.669332][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 712.669335][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 712.669340][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 712.669343][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 712.669347][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 712.669354][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 712.669358][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 712.669363][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 712.669369][ C1] RIP: 0033:0x7f439756d93b [ 712.669374][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 712.669376][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 712.669379][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 712.669381][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 712.669383][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 712.669385][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 712.669387][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 712.670126][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 712.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 712.670136][ C3] softirqs last disabled at (0): 0x0 | [ 712.670146][ C3] Tainted: [L]=SOFTLOCKUP [ 712.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 712.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 712.670155][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 712.670158][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 712.670161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 712.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 712.670165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 712.670167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 712.670169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 712.670171][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 712.670173][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 712.670176][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 712.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 712.670180][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 712.670181][ C3] PKRU: 55555554 [ 712.670182][ C3] Call Trace: [ 712.670185][ C3] [ 712.670186][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 712.670193][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 712.670198][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 712.670201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 712.670207][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 712.670212][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 712.670215][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 712.670218][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 712.670222][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 712.670225][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 712.670228][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 712.670231][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 712.670233][ C3] ? xas_alloc (lib/xarray.c:378) [ 712.670238][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 712.670243][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.670246][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.670249][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 712.670254][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 712.670258][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 712.670264][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670268][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 712.670273][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 712.670278][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670281][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 712.670284][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 712.670287][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 712.670291][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 712.670293][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 712.670301][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 712.670304][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 712.670307][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 712.670311][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 712.670316][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 712.670319][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 712.670322][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 712.670326][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 712.670334][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 712.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 712.670341][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 712.670347][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 712.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670354][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 712.670359][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 712.670363][ C3] handle_softirqs (kernel/softirq.c:579) [ 712.670369][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 712.670372][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 712.670376][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 712.670380][ C3] [ 712.670381][ C3] [ 712.670382][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 712.670387][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 712.670390][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 712.670393][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 712.670396][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 712.670398][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 712.670399][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 712.670401][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 712.670403][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 712.670407][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 712.670412][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 712.670418][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 712.670422][ C3] ? xas_alloc (lib/xarray.c:378) [ 712.670427][ C3] ? xas_alloc (lib/xarray.c:378) [ 712.670429][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 712.670434][ C3] ? xas_alloc (lib/xarray.c:378) [ 712.670436][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 712.670441][ C3] xas_alloc (lib/xarray.c:378) [ 712.670446][ C3] xas_create (lib/xarray.c:685) [ 712.670452][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 712.670457][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.670461][ C3] __xa_store (lib/xarray.c:1703) [ 712.670465][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 712.670469][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.670472][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 712.670475][ C3] ? xa_store (lib/xarray.c:1734) [ 712.670480][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 712.670484][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 712.670487][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 712.670492][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 712.670494][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 712.670497][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670501][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 712.670504][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 712.670508][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 712.670512][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 712.670517][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 712.670520][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 712.670525][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 712.670531][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 712.670535][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 712.670540][ C3] ksys_unshare (kernel/fork.c:3121) [ 712.670544][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 712.670547][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 712.670550][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 712.670553][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 712.670556][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 712.670562][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 712.670565][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 712.670570][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 712.670573][ C3] RIP: 0033:0x7f439756d93b [ 712.670577][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 712.670579][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 712.670582][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 712.670584][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 712.670586][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 712.670587][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 712.670589][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 736.025184][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 736.025472][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 736.025716][ C1] NMI backtrace for cpu 1 | [ 736.025731][ C1] Tainted: [L]=SOFTLOCKUP [ 736.025733][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 736.025735][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 736.025743][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 736.025746][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 736.025750][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 736.025752][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 736.025754][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 736.025756][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 736.025758][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 736.025760][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 736.025762][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 736.025765][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 736.025767][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 736.025769][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 736.025770][ C1] PKRU: 55555554 [ 736.025772][ C1] Call Trace: [ 736.025774][ C1] [ 736.025777][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 736.025781][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 736.025786][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 736.025790][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 736.025797][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 736.025800][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 736.025803][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 736.025806][ C1] ? xa_store (lib/xarray.c:1734) [ 736.025814][ C1] xa_store (lib/xarray.c:1734) [ 736.025818][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 736.025823][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 736.025828][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 736.025831][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 736.025834][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.025839][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.025842][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 736.025851][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 736.025855][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 736.025860][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 736.025868][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 736.025873][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 736.025881][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 736.025885][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 736.025893][ C1] ksys_unshare (kernel/fork.c:3121) [ 736.025900][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 736.025903][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 736.025910][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 736.025913][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 736.025916][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 736.025924][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 736.025928][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 736.025934][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 736.025940][ C1] RIP: 0033:0x7f439756d93b [ 736.025946][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 736.025949][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 736.025952][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 736.025955][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 736.025956][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 736.025958][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 736.025960][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 736.025958][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 736.025960][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 736.025965][ C1] | [ 736.026715][ C3] Tainted: [L]=SOFTLOCKUP [ 736.026717][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 736.026719][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 736.026724][ C3] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 736.026728][ C3] RSP: 0018:ffffc90000270a30 EFLAGS: 00000282 [ 736.026731][ C3] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 736.026733][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 736.026735][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 736.026737][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 736.026739][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 736.026742][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 736.026745][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 736.026748][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 736.026750][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 736.026752][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 736.026754][ C3] PKRU: 55555554 [ 736.026755][ C3] Call Trace: [ 736.026756][ C3] [ 736.026758][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 736.026762][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 736.026768][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 736.026773][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 736.026776][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 736.026780][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 736.026786][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 736.026789][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 736.026794][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 736.026796][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 736.026800][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 736.026803][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 736.026805][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 736.026808][ C3] ? xas_alloc (lib/xarray.c:378) [ 736.026813][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 736.026816][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 736.026819][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 736.026822][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 736.026828][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 736.026832][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 736.026837][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.026841][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 736.026846][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 736.026850][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.026853][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 736.026856][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 736.026859][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 736.026862][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 736.026865][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 736.026874][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 736.026877][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 736.026880][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 736.026884][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 736.026888][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 736.026891][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 736.026894][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 736.026898][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.026902][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 736.026906][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 736.026910][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 736.026913][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 736.026918][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 736.026922][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.026925][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 736.026930][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 736.026934][ C3] handle_softirqs (kernel/softirq.c:579) [ 736.026939][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 736.026942][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 736.026946][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 736.026949][ C3] [ 736.026950][ C3] [ 736.026951][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 736.026956][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 736.026959][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 736.026961][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 736.026963][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 736.026965][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 736.026967][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 736.026968][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 736.026970][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 736.026974][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 736.026979][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 736.026984][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 736.026987][ C3] ? xas_alloc (lib/xarray.c:378) [ 736.026992][ C3] ? xas_alloc (lib/xarray.c:378) [ 736.026994][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 736.026998][ C3] ? xas_alloc (lib/xarray.c:378) [ 736.027001][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 736.027005][ C3] xas_alloc (lib/xarray.c:378) [ 736.027010][ C3] xas_create (lib/xarray.c:685) [ 736.027016][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 736.027020][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 736.027024][ C3] __xa_store (lib/xarray.c:1703) [ 736.027028][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 736.027033][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 736.027035][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 736.027038][ C3] ? xa_store (lib/xarray.c:1734) [ 736.027043][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 736.027047][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 736.027050][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 736.027055][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 736.027058][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 736.027060][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.027064][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 736.027067][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 736.027072][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 736.027075][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 736.027080][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 736.027083][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 736.027087][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 736.027094][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 736.027097][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 736.027101][ C3] ksys_unshare (kernel/fork.c:3121) [ 736.027106][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 736.027109][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 736.027112][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 736.027114][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 736.027118][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 736.027123][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 736.027127][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 736.027131][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 736.027133][ C3] RIP: 0033:0x7f439756d93b [ 736.027138][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 736.027141][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 736.027144][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 736.027145][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 736.027147][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 736.027149][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 736.027150][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 740.656142][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 740.656153][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 740.656156][ C0] softirqs last disabled at (0): 0x0 | [ 740.656169][ C0] Tainted: [L]=SOFTLOCKUP [ 740.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 740.656173][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 740.656183][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 740.656186][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 740.656189][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 740.656191][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 740.656193][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 740.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 740.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 740.656199][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 740.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 740.656206][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 740.656208][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 740.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 740.656211][ C0] PKRU: 55555554 [ 740.656212][ C0] Call Trace: [ 740.656216][ C0] [ 740.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 740.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 740.656230][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 740.656234][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 740.656242][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 740.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 740.656249][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 740.656251][ C0] ? xa_store (lib/xarray.c:1734) [ 740.656259][ C0] xa_store (lib/xarray.c:1734) [ 740.656264][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 740.656270][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 740.656275][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 740.656278][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 740.656281][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 740.656289][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 740.656294][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 740.656304][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 740.656312][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 740.656321][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 740.656332][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 740.656340][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 740.656350][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 740.656353][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 740.656360][ C0] ksys_unshare (kernel/fork.c:3121) [ 740.656366][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 740.656369][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 740.656374][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 740.656378][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 740.656381][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 740.656388][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 740.656392][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 740.656398][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 740.656403][ C0] RIP: 0033:0x7f439756d93b [ 740.656409][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 740.656411][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 740.656414][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 740.656416][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 740.656418][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 740.656420][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 740.656422][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 744.669145][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 744.669154][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 744.669158][ C2] softirqs last disabled at (0): 0x0 | [ 744.669172][ C2] Tainted: [L]=SOFTLOCKUP [ 744.669174][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 744.669177][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 744.669189][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 744.669192][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 744.669195][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 744.669197][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 744.669199][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 744.669201][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 744.669203][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 744.669205][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 744.669207][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 744.669211][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 744.669212][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 744.669214][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 744.669215][ C2] PKRU: 55555554 [ 744.669216][ C2] Call Trace: [ 744.669222][ C2] [ 744.669227][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 744.669231][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 744.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 744.669241][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 744.669249][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 744.669253][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 744.669256][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 744.669258][ C2] ? xa_store (lib/xarray.c:1734) [ 744.669266][ C2] xa_store (lib/xarray.c:1734) [ 744.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 744.669277][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 744.669282][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 744.669285][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 744.669288][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 744.669295][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 744.669298][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 744.669306][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 744.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 744.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 744.669323][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 744.669328][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 744.669338][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 744.669342][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 744.669348][ C2] ksys_unshare (kernel/fork.c:3121) [ 744.669354][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 744.669357][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 744.669362][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 744.669366][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 744.669369][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 744.669377][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 744.669382][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 744.669387][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 744.669393][ C2] RIP: 0033:0x7f439756d93b [ 744.669399][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 744.669401][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 744.669404][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 744.669406][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 744.669408][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 744.669410][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 744.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 760.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 760.669152][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 760.669155][ C1] softirqs last disabled at (0): 0x0 | [ 760.669169][ C1] Tainted: [L]=SOFTLOCKUP [ 760.669170][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 760.669172][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 760.669183][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 760.669186][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 760.669189][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 760.669191][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 760.669193][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 760.669195][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 760.669197][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 760.669199][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 760.669201][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 760.669205][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 760.669207][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 760.669208][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 760.669210][ C1] PKRU: 55555554 [ 760.669211][ C1] Call Trace: [ 760.669216][ C1] [ 760.669220][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 760.669224][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 760.669229][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 760.669233][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 760.669242][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 760.669245][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 760.669248][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 760.669251][ C1] ? xa_store (lib/xarray.c:1734) [ 760.669258][ C1] xa_store (lib/xarray.c:1734) [ 760.669263][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 760.669269][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 760.669274][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 760.669277][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 760.669280][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.669287][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.669290][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 760.669298][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 760.669301][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 760.669306][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 760.669314][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 760.669318][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 760.669328][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 760.669331][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 760.669338][ C1] ksys_unshare (kernel/fork.c:3121) [ 760.669343][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 760.669346][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 760.669351][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 760.669354][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 760.669358][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 760.669365][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 760.669369][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 760.669375][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 760.669381][ C1] RIP: 0033:0x7f439756d93b [ 760.669386][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 760.669388][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 760.669391][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 760.669393][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 760.669395][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 760.669397][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 760.669399][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 760.670129][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 760.670135][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 760.670139][ C3] softirqs last disabled at (0): 0x0 | [ 760.670149][ C3] Tainted: [L]=SOFTLOCKUP [ 760.670150][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 760.670152][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 760.670158][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 760.670161][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 760.670164][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 760.670166][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 760.670168][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 760.670170][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 760.670172][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 760.670174][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 760.670176][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 760.670179][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 760.670181][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 760.670182][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 760.670184][ C3] PKRU: 55555554 [ 760.670185][ C3] Call Trace: [ 760.670188][ C3] [ 760.670189][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 760.670196][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 760.670201][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 760.670204][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 760.670209][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 760.670215][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 760.670218][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 760.670222][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 760.670225][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 760.670229][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 760.670231][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 760.670234][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 760.670237][ C3] ? xas_alloc (lib/xarray.c:378) [ 760.670241][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 760.670245][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 760.670249][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 760.670252][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 760.670258][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 760.670262][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 760.670268][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670272][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 760.670277][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 760.670282][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670285][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 760.670288][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 760.670291][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 760.670295][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 760.670297][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 760.670304][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 760.670307][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 760.670310][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 760.670314][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 760.670318][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 760.670321][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 760.670324][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 760.670328][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670331][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 760.670335][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 760.670340][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 760.670343][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 760.670349][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 760.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670356][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 760.670361][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 760.670365][ C3] handle_softirqs (kernel/softirq.c:579) [ 760.670371][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 760.670375][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 760.670379][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 760.670383][ C3] [ 760.670383][ C3] [ 760.670385][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 760.670389][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 760.670393][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 760.670396][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 760.670399][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 760.670401][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 760.670402][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 760.670404][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 760.670406][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 760.670410][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 760.670416][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 760.670422][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 760.670426][ C3] ? xas_alloc (lib/xarray.c:378) [ 760.670430][ C3] ? xas_alloc (lib/xarray.c:378) [ 760.670433][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 760.670437][ C3] ? xas_alloc (lib/xarray.c:378) [ 760.670440][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 760.670445][ C3] xas_alloc (lib/xarray.c:378) [ 760.670449][ C3] xas_create (lib/xarray.c:685) [ 760.670456][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 760.670460][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 760.670464][ C3] __xa_store (lib/xarray.c:1703) [ 760.670468][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 760.670473][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 760.670475][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 760.670479][ C3] ? xa_store (lib/xarray.c:1734) [ 760.670484][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 760.670488][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 760.670491][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 760.670496][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 760.670499][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 760.670502][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670506][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 760.670509][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 760.670513][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 760.670517][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 760.670521][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 760.670525][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 760.670529][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 760.670536][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 760.670540][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 760.670545][ C3] ksys_unshare (kernel/fork.c:3121) [ 760.670549][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 760.670552][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 760.670555][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 760.670558][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 760.670561][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 760.670566][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 760.670570][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 760.670575][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 760.670578][ C3] RIP: 0033:0x7f439756d93b [ 760.670582][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 760.670584][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 760.670587][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 760.670589][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 760.670591][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 760.670593][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 760.670595][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 768.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 768.656146][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 768.656150][ C0] softirqs last disabled at (0): 0x0 | [ 768.656163][ C0] Tainted: [L]=SOFTLOCKUP [ 768.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 768.656166][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 768.656174][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 768.656176][ C0] RSP: 0018:ffffc900034c7a00 EFLAGS: 00000282 [ 768.656180][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 768.656182][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 768.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 768.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 768.656188][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 768.656190][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 768.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 768.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 768.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 768.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 768.656201][ C0] PKRU: 55555554 [ 768.656202][ C0] Call Trace: [ 768.656206][ C0] [ 768.656209][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 768.656219][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 768.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 768.656227][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 768.656231][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 768.656238][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 768.656242][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 768.656244][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 768.656247][ C0] ? xa_store (lib/xarray.c:1734) [ 768.656254][ C0] xa_store (lib/xarray.c:1734) [ 768.656259][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 768.656265][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 768.656270][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 768.656273][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 768.656276][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 768.656283][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 768.656286][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 768.656294][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 768.656298][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 768.656303][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 768.656310][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 768.656315][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 768.656324][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 768.656328][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 768.656335][ C0] ksys_unshare (kernel/fork.c:3121) [ 768.656340][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 768.656343][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 768.656348][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 768.656352][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 768.656355][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 768.656362][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 768.656366][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 768.656372][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 768.656377][ C0] RIP: 0033:0x7f439756d93b [ 768.656382][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 768.656384][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 768.656388][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 768.656390][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 768.656392][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 768.656393][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 768.656395][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 772.669133][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 772.669140][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 772.669144][ C2] softirqs last disabled at (0): 0x0 | [ 772.669156][ C2] Tainted: [L]=SOFTLOCKUP [ 772.669159][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 772.669161][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 772.669168][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 772.669171][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 772.669174][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 772.669177][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 772.669179][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 772.669181][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 772.669183][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 772.669185][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 772.669187][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 772.669191][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 772.669193][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 772.669194][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 772.669196][ C2] PKRU: 55555554 [ 772.669197][ C2] Call Trace: [ 772.669200][ C2] [ 772.669203][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 772.669208][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 772.669213][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 772.669217][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 772.669223][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 772.669227][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 772.669230][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 772.669233][ C2] ? xa_store (lib/xarray.c:1734) [ 772.669239][ C2] xa_store (lib/xarray.c:1734) [ 772.669243][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 772.669248][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 772.669253][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 772.669256][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 772.669259][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 772.669265][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 772.669269][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 772.669275][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 772.669279][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 772.669284][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 772.669289][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 772.669294][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 772.669302][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 772.669306][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 772.669311][ C2] ksys_unshare (kernel/fork.c:3121) [ 772.669316][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 772.669320][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 772.669324][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 772.669328][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 772.669331][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 772.669337][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 772.669341][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 772.669346][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 772.669350][ C2] RIP: 0033:0x7f439756d93b [ 772.669355][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 772.669358][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 772.669361][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 772.669363][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 772.669365][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 772.669367][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 772.669369][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 788.669137][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 788.669147][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 788.669151][ C1] softirqs last disabled at (0): 0x0 | [ 788.669164][ C1] Tainted: [L]=SOFTLOCKUP [ 788.669166][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 788.669169][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 788.669179][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 788.669181][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 788.669184][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 788.669186][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 788.669188][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 788.669190][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 788.669192][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 788.669194][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 788.669197][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 788.669200][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 788.669202][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 788.669203][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 788.669205][ C1] PKRU: 55555554 [ 788.669206][ C1] Call Trace: [ 788.669210][ C1] [ 788.669213][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 788.669217][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 788.669222][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 788.669227][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 788.669234][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 788.669237][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 788.669240][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 788.669243][ C1] ? xa_store (lib/xarray.c:1734) [ 788.669250][ C1] xa_store (lib/xarray.c:1734) [ 788.669255][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 788.669261][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 788.669266][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 788.669269][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 788.669272][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.669278][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.669282][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 788.669289][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 788.669293][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 788.669298][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 788.669305][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 788.669310][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 788.669319][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 788.669323][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 788.669330][ C1] ksys_unshare (kernel/fork.c:3121) [ 788.669334][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 788.669337][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 788.669342][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 788.669346][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 788.669349][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 788.669357][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 788.669360][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 788.669366][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 788.669371][ C1] RIP: 0033:0x7f439756d93b [ 788.669375][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 788.669377][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 788.669380][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 788.669382][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 788.669384][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 788.669386][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 788.669387][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 788.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 788.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 788.670136][ C3] softirqs last disabled at (0): 0x0 | [ 788.670147][ C3] Tainted: [L]=SOFTLOCKUP [ 788.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 788.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 788.670157][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 788.670159][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 788.670162][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 788.670164][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 788.670166][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 788.670168][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 788.670170][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 788.670172][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 788.670174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 788.670177][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 788.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 788.670180][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 788.670182][ C3] PKRU: 55555554 [ 788.670183][ C3] Call Trace: [ 788.670186][ C3] [ 788.670188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 788.670194][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 788.670199][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 788.670202][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 788.670207][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 788.670214][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 788.670217][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 788.670221][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 788.670224][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 788.670228][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 788.670230][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 788.670233][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 788.670235][ C3] ? xas_alloc (lib/xarray.c:378) [ 788.670240][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 788.670244][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 788.670247][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 788.670250][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 788.670255][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 788.670259][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 788.670265][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670269][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 788.670274][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 788.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670283][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 788.670285][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 788.670289][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 788.670293][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 788.670295][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 788.670302][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 788.670305][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 788.670308][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 788.670312][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 788.670317][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 788.670320][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 788.670323][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 788.670327][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670330][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 788.670334][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 788.670340][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 788.670342][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 788.670348][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 788.670352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670355][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 788.670360][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 788.670364][ C3] handle_softirqs (kernel/softirq.c:579) [ 788.670370][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 788.670374][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 788.670377][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 788.670381][ C3] [ 788.670382][ C3] [ 788.670383][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 788.670388][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 788.670392][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 788.670394][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 788.670397][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 788.670399][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 788.670401][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 788.670403][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 788.670405][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 788.670409][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 788.670415][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 788.670420][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 788.670424][ C3] ? xas_alloc (lib/xarray.c:378) [ 788.670428][ C3] ? xas_alloc (lib/xarray.c:378) [ 788.670431][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 788.670435][ C3] ? xas_alloc (lib/xarray.c:378) [ 788.670437][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 788.670443][ C3] xas_alloc (lib/xarray.c:378) [ 788.670448][ C3] xas_create (lib/xarray.c:685) [ 788.670454][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 788.670459][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 788.670462][ C3] __xa_store (lib/xarray.c:1703) [ 788.670466][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 788.670471][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 788.670473][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 788.670476][ C3] ? xa_store (lib/xarray.c:1734) [ 788.670481][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 788.670485][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 788.670488][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 788.670492][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 788.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 788.670497][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670501][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 788.670504][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 788.670509][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 788.670513][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 788.670517][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 788.670521][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 788.670525][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 788.670532][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 788.670536][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 788.670540][ C3] ksys_unshare (kernel/fork.c:3121) [ 788.670545][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 788.670548][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 788.670552][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 788.670554][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 788.670558][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 788.670563][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 788.670567][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 788.670572][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 788.670575][ C3] RIP: 0033:0x7f439756d93b [ 788.670579][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 788.670582][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 788.670585][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 788.670587][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 788.670589][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 788.670590][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 788.670592][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 796.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 796.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 796.656148][ C0] softirqs last disabled at (0): 0x0 | [ 796.656161][ C0] Tainted: [L]=SOFTLOCKUP [ 796.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 796.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 796.656173][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 796.656176][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 796.656180][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 796.656182][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 796.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 796.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 796.656188][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 796.656189][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 796.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 796.656197][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 796.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 796.656200][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 796.656201][ C0] PKRU: 55555554 [ 796.656203][ C0] Call Trace: [ 796.656206][ C0] [ 796.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 796.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 796.656218][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 796.656222][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 796.656229][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 796.656233][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 796.656235][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 796.656238][ C0] ? xa_store (lib/xarray.c:1734) [ 796.656245][ C0] xa_store (lib/xarray.c:1734) [ 796.656249][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 796.656254][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 796.656259][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 796.656262][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 796.656265][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 796.656272][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 796.656275][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 796.656282][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 796.656286][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 796.656292][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 796.656298][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 796.656303][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 796.656311][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 796.656315][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 796.656322][ C0] ksys_unshare (kernel/fork.c:3121) [ 796.656327][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 796.656330][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 796.656335][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 796.656338][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 796.656342][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 796.656349][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 796.656353][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 796.656359][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 796.656364][ C0] RIP: 0033:0x7f439756d93b [ 796.656368][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 796.656371][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 796.656374][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 796.656376][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 796.656378][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 796.656380][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 796.656382][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 800.669134][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 800.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 800.669146][ C2] softirqs last disabled at (0): 0x0 | [ 800.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 800.669159][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 800.669161][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:103 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 800.669167][ C2] Code: 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d 59 01 48 89 da <48> 29 ea 48 83 fa 10 0f 8e c0 00 00 00 41 89 eb 41 83 e3 07 75 7d All code ======== 0: 37 (bad) 1: ff 48 89 decl -0x77(%rax) 4: fd std 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 4d 89 d1 mov %r10,%r9 12: 48 c1 ed 03 shr $0x3,%rbp 16: 49 c1 e9 03 shr $0x3,%r9 1a: 48 01 c5 add %rax,%rbp 1d: 49 01 c1 add %rax,%r9 20: 48 89 e8 mov %rbp,%rax 23: 49 8d 59 01 lea 0x1(%r9),%rbx 27: 48 89 da mov %rbx,%rdx 2a:* 48 29 ea sub %rbp,%rdx <-- trapping instruction 2d: 48 83 fa 10 cmp $0x10,%rdx 31: 0f 8e c0 00 00 00 jle 0xf7 37: 41 89 eb mov %ebp,%r11d 3a: 41 83 e3 07 and $0x7,%r11d 3e: 75 7d jne 0xbd Code starting with the faulting instruction =========================================== 0: 48 29 ea sub %rbp,%rdx 3: 48 83 fa 10 cmp $0x10,%rdx 7: 0f 8e c0 00 00 00 jle 0xcd d: 41 89 eb mov %ebp,%r11d 10: 41 83 e3 07 and $0x7,%r11d 14: 75 7d jne 0x93 [ 800.669171][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 800.669174][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 800.669176][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 800.669178][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 800.669180][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 800.669182][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 800.669184][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 800.669187][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 800.669192][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 800.669194][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 800.669195][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 800.669197][ C2] PKRU: 55555554 [ 800.669198][ C2] Call Trace: [ 800.669201][ C2] [ 800.669204][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 800.669212][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 800.669215][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 800.669219][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 800.669223][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 800.669229][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 800.669233][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 800.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 800.669239][ C2] ? xa_store (lib/xarray.c:1734) [ 800.669246][ C2] xa_store (lib/xarray.c:1734) [ 800.669250][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 800.669255][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 800.669260][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 800.669263][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 800.669265][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 800.669271][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 800.669275][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 800.669281][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 800.669285][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 800.669289][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 800.669296][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 800.669300][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 800.669308][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 800.669312][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 800.669317][ C2] ksys_unshare (kernel/fork.c:3121) [ 800.669321][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 800.669325][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 800.669330][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 800.669333][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 800.669336][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 800.669343][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 800.669347][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 800.669352][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 800.669356][ C2] RIP: 0033:0x7f439756d93b [ 800.669360][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 800.669363][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 800.669366][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 800.669368][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 800.669370][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 800.669372][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 800.669374][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 814.038413][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 814.038698][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 814.038952][ C1] NMI backtrace for cpu 1 | [ 814.038967][ C1] Tainted: [L]=SOFTLOCKUP [ 814.038968][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 814.038971][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 814.038980][ C1] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 814.038982][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 814.038986][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 814.038988][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 814.038990][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 814.038992][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 814.038994][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 814.038995][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 814.038998][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 814.039001][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 814.039003][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 814.039004][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 814.039006][ C1] PKRU: 55555554 [ 814.039007][ C1] Call Trace: [ 814.039010][ C1] [ 814.039011][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 814.039018][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 814.039021][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 814.039025][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 814.039029][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 814.039036][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 814.039039][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 814.039042][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 814.039045][ C1] ? xa_store (lib/xarray.c:1734) [ 814.039052][ C1] xa_store (lib/xarray.c:1734) [ 814.039056][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 814.039062][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 814.039067][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 814.039070][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 814.039073][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.039078][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.039081][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 814.039089][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 814.039093][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 814.039098][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 814.039105][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 814.039109][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 814.039117][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 814.039121][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 814.039128][ C1] ksys_unshare (kernel/fork.c:3121) [ 814.039134][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 814.039138][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 814.039143][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 814.039146][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 814.039149][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 814.039157][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 814.039160][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 814.039165][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 814.039169][ C1] RIP: 0033:0x7f439756d93b [ 814.039173][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 814.039175][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 814.039179][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 814.039180][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 814.039182][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 814.039184][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 814.039186][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 814.039184][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 814.039186][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 814.039191][ C1] | [ 814.039953][ C3] Tainted: [L]=SOFTLOCKUP [ 814.039954][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 814.039956][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 814.039961][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 814.039963][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 814.039966][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 814.039968][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 814.039970][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 814.039972][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 814.039974][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 814.039975][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 814.039978][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 814.039982][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 814.039984][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 814.039985][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 814.039987][ C3] PKRU: 55555554 [ 814.039988][ C3] Call Trace: [ 814.039989][ C3] [ 814.039990][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 814.039996][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 814.040001][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 814.040004][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 814.040008][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 814.040014][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 814.040017][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 814.040021][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 814.040023][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 814.040027][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 814.040030][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 814.040033][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 814.040036][ C3] ? xas_alloc (lib/xarray.c:378) [ 814.040041][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 814.040044][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 814.040047][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 814.040050][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 814.040056][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 814.040059][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 814.040065][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040068][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 814.040073][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 814.040077][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040080][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 814.040083][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 814.040086][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 814.040089][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 814.040092][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 814.040098][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 814.040101][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 814.040104][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 814.040109][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 814.040112][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 814.040116][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 814.040119][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 814.040123][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040126][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 814.040130][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 814.040134][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 814.040137][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 814.040142][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 814.040146][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040149][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 814.040154][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 814.040158][ C3] handle_softirqs (kernel/softirq.c:579) [ 814.040163][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 814.040166][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 814.040169][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 814.040172][ C3] [ 814.040173][ C3] [ 814.040175][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 814.040179][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 814.040182][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 814.040184][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 814.040186][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 814.040188][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 814.040189][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 814.040191][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 814.040193][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 814.040197][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 814.040202][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 814.040207][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 814.040211][ C3] ? xas_alloc (lib/xarray.c:378) [ 814.040215][ C3] ? xas_alloc (lib/xarray.c:378) [ 814.040217][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 814.040221][ C3] ? xas_alloc (lib/xarray.c:378) [ 814.040224][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 814.040228][ C3] xas_alloc (lib/xarray.c:378) [ 814.040232][ C3] xas_create (lib/xarray.c:685) [ 814.040238][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 814.040242][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 814.040246][ C3] __xa_store (lib/xarray.c:1703) [ 814.040249][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 814.040254][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 814.040256][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 814.040259][ C3] ? xa_store (lib/xarray.c:1734) [ 814.040264][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 814.040268][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 814.040271][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 814.040275][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 814.040278][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 814.040280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 814.040287][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 814.040292][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 814.040295][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 814.040299][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 814.040303][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 814.040307][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 814.040313][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 814.040316][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 814.040321][ C3] ksys_unshare (kernel/fork.c:3121) [ 814.040326][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 814.040329][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 814.040332][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 814.040334][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 814.040338][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 814.040343][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 814.040346][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 814.040351][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 814.040353][ C3] RIP: 0033:0x7f439756d93b [ 814.040358][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 814.040360][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 814.040363][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 814.040365][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 814.040367][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 814.040368][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 814.040370][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 824.656134][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 824.656142][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 824.656146][ C0] softirqs last disabled at (0): 0x0 | [ 824.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 824.656160][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 824.656162][ C0] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 824.656170][ C0] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 824.656173][ C0] RSP: 0018:ffffc900034c7a10 EFLAGS: 00000202 [ 824.656177][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 824.656179][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 824.656181][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 824.656183][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 824.656186][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 824.656187][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 824.656190][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 824.656194][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 824.656195][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 824.656197][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 824.656198][ C0] PKRU: 55555554 [ 824.656199][ C0] Call Trace: [ 824.656203][ C0] [ 824.656204][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 824.656214][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 824.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 824.656222][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 824.656226][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 824.656234][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 824.656237][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 824.656240][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 824.656243][ C0] ? xa_store (lib/xarray.c:1734) [ 824.656250][ C0] xa_store (lib/xarray.c:1734) [ 824.656254][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 824.656260][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 824.656265][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 824.656268][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 824.656271][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 824.656277][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 824.656281][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 824.656288][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 824.656292][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 824.656297][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 824.656305][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 824.656310][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 824.656319][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 824.656323][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 824.656329][ C0] ksys_unshare (kernel/fork.c:3121) [ 824.656334][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 824.656337][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 824.656343][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 824.656346][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 824.656350][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 824.656357][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 824.656360][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 824.656366][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 824.656371][ C0] RIP: 0033:0x7f439756d93b [ 824.656375][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 824.656377][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 824.656380][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 824.656382][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 824.656384][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 824.656386][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 824.656388][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 828.669132][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 828.669139][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 828.669143][ C2] softirqs last disabled at (0): 0x0 | [ 828.669155][ C2] Tainted: [L]=SOFTLOCKUP [ 828.669156][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 828.669158][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 828.669166][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 828.669169][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 828.669172][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 828.669174][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 828.669176][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 828.669178][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 828.669180][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 828.669182][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 828.669184][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 828.669189][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 828.669191][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 828.669192][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 828.669194][ C2] PKRU: 55555554 [ 828.669195][ C2] Call Trace: [ 828.669200][ C2] [ 828.669203][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 828.669207][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 828.669211][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 828.669215][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 828.669222][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 828.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 828.669228][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 828.669231][ C2] ? xa_store (lib/xarray.c:1734) [ 828.669237][ C2] xa_store (lib/xarray.c:1734) [ 828.669242][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 828.669247][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 828.669252][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 828.669255][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 828.669257][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 828.669263][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 828.669266][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 828.669273][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 828.669277][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 828.669281][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 828.669288][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 828.669293][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 828.669300][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 828.669304][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 828.669310][ C2] ksys_unshare (kernel/fork.c:3121) [ 828.669315][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 828.669318][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 828.669323][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 828.669326][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 828.669330][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 828.669336][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 828.669340][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 828.669345][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 828.669350][ C2] RIP: 0033:0x7f439756d93b [ 828.669354][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 828.669357][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 828.669360][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 828.669362][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 828.669364][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 828.669366][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 828.669367][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 840.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 840.669149][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 840.669152][ C1] softirqs last disabled at (0): 0x0 | [ 840.669165][ C1] Tainted: [L]=SOFTLOCKUP [ 840.669167][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 840.669170][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 840.669177][ C1] Code: 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 <48> 01 f0 55 53 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe All code ======== 0: 0f 1f 40 00 nopl 0x0(%rax) 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 66 0f 1f 00 nopw (%rax) 18: 48 85 f6 test %rsi,%rsi 1b: 0f 84 5e 01 00 00 je 0x17f 21: 48 89 f8 mov %rdi,%rax 24: 41 54 push %r12 26: 44 0f b6 c2 movzbl %dl,%r8d 2a:* 48 01 f0 add %rsi,%rax <-- trapping instruction 2d: 55 push %rbp 2e: 53 push %rbx 2f: 72 14 jb 0x45 31: eb 26 jmp 0x59 33: cc int3 34: cc int3 35: cc int3 36: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 3d: ff ff fe Code starting with the faulting instruction =========================================== 0: 48 01 f0 add %rsi,%rax 3: 55 push %rbp 4: 53 push %rbx 5: 72 14 jb 0x1b 7: eb 26 jmp 0x2f 9: cc int3 a: cc int3 b: cc int3 c: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 13: ff ff fe [ 840.669179][ C1] RSP: 0018:ffffc900034b7a08 EFLAGS: 00000202 [ 840.669182][ C1] RAX: ffffffffbbee5c00 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 840.669185][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 840.669187][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 840.669189][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 840.669191][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 840.669192][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 840.669195][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 840.669199][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 840.669201][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 840.669202][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 840.669203][ C1] PKRU: 55555554 [ 840.669205][ C1] Call Trace: [ 840.669208][ C1] [ 840.669211][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 840.669222][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 840.669225][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 840.669230][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 840.669234][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 840.669241][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 840.669245][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 840.669247][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 840.669250][ C1] ? xa_store (lib/xarray.c:1734) [ 840.669257][ C1] xa_store (lib/xarray.c:1734) [ 840.669262][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 840.669268][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 840.669273][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 840.669276][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 840.669279][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.669285][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.669289][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 840.669296][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 840.669300][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 840.669305][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 840.669312][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 840.669317][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 840.669327][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 840.669331][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 840.669337][ C1] ksys_unshare (kernel/fork.c:3121) [ 840.669342][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 840.669345][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 840.669350][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 840.669353][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 840.669357][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 840.669364][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 840.669368][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 840.669374][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 840.669379][ C1] RIP: 0033:0x7f439756d93b [ 840.669383][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 840.669385][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 840.669388][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 840.669390][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 840.669392][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 840.669393][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 840.669395][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 840.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 840.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 840.670136][ C3] softirqs last disabled at (0): 0x0 | [ 840.670146][ C3] Tainted: [L]=SOFTLOCKUP [ 840.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 840.670149][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 840.670155][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 840.670158][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 840.670161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 840.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 840.670164][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 840.670166][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 840.670168][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 840.670170][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 840.670172][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 840.670175][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 840.670177][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 840.670178][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 840.670180][ C3] PKRU: 55555554 [ 840.670181][ C3] Call Trace: [ 840.670184][ C3] [ 840.670185][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 840.670191][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 840.670196][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 840.670199][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 840.670204][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 840.670210][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 840.670213][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 840.670217][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 840.670220][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 840.670223][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 840.670225][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 840.670228][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 840.670230][ C3] ? xas_alloc (lib/xarray.c:378) [ 840.670235][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 840.670239][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 840.670242][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 840.670245][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 840.670250][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 840.670255][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 840.670260][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670264][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 840.670269][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 840.670273][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670276][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 840.670279][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 840.670282][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 840.670286][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 840.670288][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 840.670294][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 840.670297][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 840.670300][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 840.670304][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 840.670308][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 840.670311][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 840.670314][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 840.670317][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670320][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 840.670324][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 840.670329][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 840.670332][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 840.670337][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 840.670342][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670345][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 840.670350][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 840.670354][ C3] handle_softirqs (kernel/softirq.c:579) [ 840.670360][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 840.670364][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 840.670367][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 840.670371][ C3] [ 840.670372][ C3] [ 840.670374][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 840.670378][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 840.670382][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 840.670384][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 840.670387][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 840.670389][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 840.670391][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 840.670393][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 840.670395][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 840.670399][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 840.670404][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 840.670410][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 840.670413][ C3] ? xas_alloc (lib/xarray.c:378) [ 840.670418][ C3] ? xas_alloc (lib/xarray.c:378) [ 840.670421][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 840.670425][ C3] ? xas_alloc (lib/xarray.c:378) [ 840.670427][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 840.670433][ C3] xas_alloc (lib/xarray.c:378) [ 840.670437][ C3] xas_create (lib/xarray.c:685) [ 840.670443][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 840.670447][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 840.670451][ C3] __xa_store (lib/xarray.c:1703) [ 840.670455][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 840.670459][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 840.670462][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 840.670465][ C3] ? xa_store (lib/xarray.c:1734) [ 840.670470][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 840.670473][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 840.670476][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 840.670481][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 840.670484][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 840.670487][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670491][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 840.670494][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 840.670499][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 840.670503][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 840.670507][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 840.670511][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 840.670515][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 840.670522][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 840.670526][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 840.670531][ C3] ksys_unshare (kernel/fork.c:3121) [ 840.670535][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 840.670539][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 840.670542][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 840.670545][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 840.670548][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 840.670554][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 840.670557][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 840.670562][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 840.670565][ C3] RIP: 0033:0x7f439756d93b [ 840.670569][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 840.670572][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 840.670574][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 840.670576][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 840.670578][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 840.670579][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 840.670581][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 852.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 852.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 852.656147][ C0] softirqs last disabled at (0): 0x0 | [ 852.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 852.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 852.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 852.656173][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 852.656176][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 852.656180][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 852.656182][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 852.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 852.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 852.656188][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 852.656190][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 852.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 852.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 852.656197][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 852.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 852.656200][ C0] PKRU: 55555554 [ 852.656201][ C0] Call Trace: [ 852.656205][ C0] [ 852.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 852.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 852.656218][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 852.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 852.656230][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 852.656234][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 852.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 852.656240][ C0] ? xa_store (lib/xarray.c:1734) [ 852.656247][ C0] xa_store (lib/xarray.c:1734) [ 852.656251][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 852.656257][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 852.656262][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 852.656265][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 852.656268][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 852.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 852.656279][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 852.656286][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 852.656290][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 852.656295][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 852.656303][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 852.656307][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 852.656316][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 852.656320][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 852.656326][ C0] ksys_unshare (kernel/fork.c:3121) [ 852.656331][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 852.656334][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 852.656340][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 852.656343][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 852.656346][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 852.656354][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 852.656357][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 852.656363][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 852.656369][ C0] RIP: 0033:0x7f439756d93b [ 852.656373][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 852.656376][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 852.656379][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 852.656381][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 852.656383][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 852.656385][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 852.656387][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 856.669143][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 856.669153][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 856.669156][ C2] softirqs last disabled at (0): 0x0 | [ 856.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 856.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 856.669173][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 856.669183][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 856.669186][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 856.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 856.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 856.669193][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 856.669195][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 856.669197][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 856.669199][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 856.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 856.669205][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 856.669207][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 856.669208][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 856.669210][ C2] PKRU: 55555554 [ 856.669211][ C2] Call Trace: [ 856.669216][ C2] [ 856.669220][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 856.669224][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 856.669230][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 856.669234][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 856.669241][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 856.669245][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 856.669248][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 856.669250][ C2] ? xa_store (lib/xarray.c:1734) [ 856.669257][ C2] xa_store (lib/xarray.c:1734) [ 856.669262][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 856.669268][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 856.669273][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 856.669276][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 856.669279][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 856.669285][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 856.669289][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 856.669296][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 856.669300][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 856.669305][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 856.669312][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 856.669317][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 856.669326][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 856.669330][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 856.669336][ C2] ksys_unshare (kernel/fork.c:3121) [ 856.669341][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 856.669345][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 856.669350][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 856.669353][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 856.669356][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 856.669364][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 856.669368][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 856.669374][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 856.669379][ C2] RIP: 0033:0x7f439756d93b [ 856.669385][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 856.669388][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 856.669391][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 856.669393][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 856.669395][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 856.669397][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 856.669399][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 868.669141][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 868.669151][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 868.669155][ C1] softirqs last disabled at (0): 0x0 | [ 868.669167][ C1] Tainted: [L]=SOFTLOCKUP [ 868.669169][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 868.669172][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 868.669182][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 868.669185][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 868.669189][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 868.669191][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 868.669193][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 868.669195][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 868.669197][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 868.669199][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 868.669201][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 868.669204][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 868.669206][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 868.669208][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 868.669209][ C1] PKRU: 55555554 [ 868.669210][ C1] Call Trace: [ 868.669215][ C1] [ 868.669219][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 868.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 868.669229][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 868.669233][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 868.669241][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 868.669245][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 868.669248][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 868.669250][ C1] ? xa_store (lib/xarray.c:1734) [ 868.669257][ C1] xa_store (lib/xarray.c:1734) [ 868.669262][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 868.669269][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 868.669274][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 868.669277][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 868.669279][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.669287][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.669290][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 868.669297][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 868.669301][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 868.669306][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 868.669314][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 868.669318][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 868.669327][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 868.669331][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 868.669338][ C1] ksys_unshare (kernel/fork.c:3121) [ 868.669343][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 868.669346][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 868.669351][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 868.669354][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 868.669358][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 868.669366][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 868.669369][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 868.669376][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 868.669381][ C1] RIP: 0033:0x7f439756d93b [ 868.669387][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 868.669389][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 868.669392][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 868.669394][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 868.669396][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 868.669398][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 868.669400][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 868.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 868.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 868.670136][ C3] softirqs last disabled at (0): 0x0 | [ 868.670147][ C3] Tainted: [L]=SOFTLOCKUP [ 868.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 868.670150][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 868.670156][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 868.670159][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 868.670162][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 868.670164][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 868.670166][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 868.670168][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 868.670170][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 868.670172][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 868.670174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 868.670178][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 868.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 868.670181][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 868.670182][ C3] PKRU: 55555554 [ 868.670183][ C3] Call Trace: [ 868.670186][ C3] [ 868.670188][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 868.670193][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 868.670198][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 868.670203][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 868.670206][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 868.670211][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 868.670216][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 868.670220][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 868.670223][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 868.670226][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 868.670230][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 868.670232][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 868.670235][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 868.670237][ C3] ? xas_alloc (lib/xarray.c:378) [ 868.670242][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 868.670246][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 868.670249][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 868.670252][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 868.670257][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 868.670261][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 868.670267][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670270][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 868.670276][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 868.670281][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670284][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 868.670287][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 868.670290][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 868.670293][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 868.670296][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 868.670302][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 868.670304][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 868.670307][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 868.670312][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 868.670316][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 868.670319][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 868.670322][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 868.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 868.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 868.670337][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 868.670340][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 868.670345][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 868.670349][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670352][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 868.670357][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 868.670361][ C3] handle_softirqs (kernel/softirq.c:579) [ 868.670367][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 868.670371][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 868.670374][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 868.670378][ C3] [ 868.670380][ C3] [ 868.670381][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 868.670386][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 868.670389][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 868.670391][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 868.670394][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 868.670396][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 868.670398][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 868.670400][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 868.670401][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 868.670405][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 868.670411][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 868.670417][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 868.670421][ C3] ? xas_alloc (lib/xarray.c:378) [ 868.670425][ C3] ? xas_alloc (lib/xarray.c:378) [ 868.670428][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 868.670432][ C3] ? xas_alloc (lib/xarray.c:378) [ 868.670434][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 868.670439][ C3] xas_alloc (lib/xarray.c:378) [ 868.670444][ C3] xas_create (lib/xarray.c:685) [ 868.670450][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 868.670455][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 868.670458][ C3] __xa_store (lib/xarray.c:1703) [ 868.670462][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 868.670467][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 868.670469][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 868.670472][ C3] ? xa_store (lib/xarray.c:1734) [ 868.670477][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 868.670481][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 868.670484][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 868.670489][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 868.670492][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 868.670494][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670498][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 868.670502][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 868.670506][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 868.670510][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 868.670515][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 868.670518][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 868.670523][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 868.670529][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 868.670533][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 868.670538][ C3] ksys_unshare (kernel/fork.c:3121) [ 868.670541][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 868.670545][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 868.670548][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 868.670550][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 868.670553][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 868.670559][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 868.670563][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 868.670567][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 868.670570][ C3] RIP: 0033:0x7f439756d93b [ 868.670574][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 868.670577][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 868.670580][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 868.670582][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 868.670584][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 868.670585][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 868.670587][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 880.656134][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 880.656143][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 880.656146][ C0] softirqs last disabled at (0): 0x0 | [ 880.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 880.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 880.656163][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 880.656171][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 880.656174][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 880.656177][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 880.656179][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 880.656181][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 880.656184][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 880.656186][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 880.656188][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 880.656190][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 880.656194][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 880.656196][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 880.656198][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 880.656199][ C0] PKRU: 55555554 [ 880.656200][ C0] Call Trace: [ 880.656204][ C0] [ 880.656207][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 880.656211][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 880.656215][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 880.656220][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 880.656228][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 880.656231][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 880.656233][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 880.656236][ C0] ? xa_store (lib/xarray.c:1734) [ 880.656243][ C0] xa_store (lib/xarray.c:1734) [ 880.656248][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 880.656253][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 880.656258][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 880.656261][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 880.656264][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 880.656270][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 880.656274][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 880.656281][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 880.656285][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 880.656290][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 880.656297][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 880.656302][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 880.656310][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 880.656314][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 880.656320][ C0] ksys_unshare (kernel/fork.c:3121) [ 880.656325][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 880.656328][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 880.656333][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 880.656337][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 880.656340][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 880.656347][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 880.656351][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 880.656357][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 880.656362][ C0] RIP: 0033:0x7f439756d93b [ 880.656367][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 880.656369][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 880.656373][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 880.656375][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 880.656376][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 880.656379][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 880.656380][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 884.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 884.669152][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 884.669156][ C2] softirqs last disabled at (0): 0x0 | [ 884.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 884.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 884.669173][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 884.669183][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 884.669186][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 884.669190][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 884.669192][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 884.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 884.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 884.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 884.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 884.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 884.669206][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 884.669208][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 884.669209][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 884.669210][ C2] PKRU: 55555554 [ 884.669212][ C2] Call Trace: [ 884.669216][ C2] [ 884.669220][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 884.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 884.669230][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 884.669234][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 884.669242][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 884.669246][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 884.669249][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 884.669252][ C2] ? xa_store (lib/xarray.c:1734) [ 884.669259][ C2] xa_store (lib/xarray.c:1734) [ 884.669263][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 884.669269][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 884.669274][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 884.669277][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 884.669280][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 884.669287][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 884.669290][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 884.669298][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 884.669302][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 884.669306][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 884.669314][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 884.669319][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 884.669328][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 884.669332][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 884.669339][ C2] ksys_unshare (kernel/fork.c:3121) [ 884.669344][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 884.669347][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 884.669352][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 884.669356][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 884.669359][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 884.669367][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 884.669371][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 884.669376][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 884.669382][ C2] RIP: 0033:0x7f439756d93b [ 884.669387][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 884.669389][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 884.669392][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 884.669394][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 884.669396][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 884.669398][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 884.669400][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 892.052072][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 892.052357][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 892.052595][ C1] NMI backtrace for cpu 1 | [ 892.052610][ C1] Tainted: [L]=SOFTLOCKUP [ 892.052612][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 892.052614][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 892.052623][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 892.052626][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 892.052629][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 892.052631][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 892.052633][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 892.052635][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 892.052638][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 892.052639][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 892.052642][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 892.052645][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 892.052647][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 892.052648][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 892.052650][ C1] PKRU: 55555554 [ 892.052651][ C1] Call Trace: [ 892.052653][ C1] [ 892.052656][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 892.052660][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 892.052665][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 892.052668][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 892.052676][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 892.052679][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 892.052682][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 892.052685][ C1] ? xa_store (lib/xarray.c:1734) [ 892.052692][ C1] xa_store (lib/xarray.c:1734) [ 892.052696][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 892.052702][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 892.052707][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 892.052710][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 892.052713][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.052718][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.052721][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 892.052729][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 892.052733][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 892.052738][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 892.052745][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 892.052749][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 892.052757][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 892.052761][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 892.052768][ C1] ksys_unshare (kernel/fork.c:3121) [ 892.052775][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 892.052778][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 892.052783][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 892.052786][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 892.052790][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 892.052798][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 892.052802][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 892.052808][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 892.052812][ C1] RIP: 0033:0x7f439756d93b [ 892.052817][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 892.052820][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 892.052823][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 892.052825][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 892.052827][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 892.052829][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 892.052830][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 892.052829][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 892.052830][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 892.052836][ C1] | [ 892.053597][ C3] Tainted: [L]=SOFTLOCKUP [ 892.053598][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 892.053600][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 892.053605][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 892.053608][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 892.053611][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 892.053613][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 892.053615][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 892.053616][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 892.053618][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 892.053620][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 892.053623][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 892.053626][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 892.053628][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 892.053630][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 892.053631][ C3] PKRU: 55555554 [ 892.053632][ C3] Call Trace: [ 892.053634][ C3] [ 892.053635][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 892.053641][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 892.053646][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 892.053649][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 892.053653][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 892.053658][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 892.053661][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 892.053665][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 892.053668][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 892.053671][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 892.053674][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 892.053676][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 892.053679][ C3] ? xas_alloc (lib/xarray.c:378) [ 892.053684][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 892.053687][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 892.053690][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 892.053693][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 892.053699][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 892.053702][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 892.053708][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053712][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 892.053717][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 892.053721][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053724][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 892.053727][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 892.053730][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 892.053733][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 892.053735][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 892.053742][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 892.053745][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 892.053748][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 892.053752][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 892.053756][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 892.053759][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 892.053761][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 892.053765][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053768][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 892.053773][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 892.053777][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 892.053779][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 892.053784][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 892.053788][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053792][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 892.053797][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 892.053801][ C3] handle_softirqs (kernel/softirq.c:579) [ 892.053806][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 892.053809][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 892.053813][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 892.053816][ C3] [ 892.053817][ C3] [ 892.053818][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 892.053822][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 892.053825][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 892.053827][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 892.053830][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 892.053831][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 892.053833][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 892.053834][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 892.053836][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 892.053840][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 892.053845][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 892.053850][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 892.053854][ C3] ? xas_alloc (lib/xarray.c:378) [ 892.053858][ C3] ? xas_alloc (lib/xarray.c:378) [ 892.053861][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 892.053865][ C3] ? xas_alloc (lib/xarray.c:378) [ 892.053867][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 892.053872][ C3] xas_alloc (lib/xarray.c:378) [ 892.053877][ C3] xas_create (lib/xarray.c:685) [ 892.053883][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 892.053887][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 892.053890][ C3] __xa_store (lib/xarray.c:1703) [ 892.053894][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 892.053899][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 892.053901][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 892.053904][ C3] ? xa_store (lib/xarray.c:1734) [ 892.053909][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 892.053912][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 892.053915][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 892.053920][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 892.053922][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 892.053925][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053929][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 892.053932][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 892.053936][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 892.053940][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 892.053944][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 892.053948][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 892.053952][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 892.053958][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 892.053961][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 892.053966][ C3] ksys_unshare (kernel/fork.c:3121) [ 892.053970][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 892.053973][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 892.053977][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 892.053979][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 892.053982][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 892.053988][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 892.053991][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 892.053996][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 892.053999][ C3] RIP: 0033:0x7f439756d93b [ 892.054003][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 892.054005][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 892.054008][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 892.054009][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 892.054011][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 892.054012][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 892.054014][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 908.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 908.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 908.656148][ C0] softirqs last disabled at (0): 0x0 | [ 908.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 908.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 908.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 908.656174][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 908.656177][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 908.656180][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 908.656182][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 908.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 908.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 908.656188][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 908.656190][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 908.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 908.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 908.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 908.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 908.656201][ C0] PKRU: 55555554 [ 908.656202][ C0] Call Trace: [ 908.656206][ C0] [ 908.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 908.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 908.656218][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 908.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 908.656231][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 908.656234][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 908.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 908.656240][ C0] ? xa_store (lib/xarray.c:1734) [ 908.656247][ C0] xa_store (lib/xarray.c:1734) [ 908.656251][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 908.656257][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 908.656262][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 908.656265][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 908.656267][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 908.656274][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 908.656277][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 908.656285][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 908.656288][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 908.656294][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 908.656301][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 908.656305][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 908.656314][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 908.656318][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 908.656325][ C0] ksys_unshare (kernel/fork.c:3121) [ 908.656330][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 908.656333][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 908.656338][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 908.656341][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 908.656345][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 908.656352][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 908.656356][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 908.656362][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 908.656367][ C0] RIP: 0033:0x7f439756d93b [ 908.656370][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 908.656373][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 908.656376][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 908.656378][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 908.656380][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 908.656382][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 908.656384][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 912.669144][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 912.669155][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 912.669159][ C2] softirqs last disabled at (0): 0x0 | [ 912.669173][ C2] Tainted: [L]=SOFTLOCKUP [ 912.669175][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 912.669178][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 912.669188][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 912.669191][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 912.669194][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 912.669196][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 912.669198][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 912.669200][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 912.669202][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 912.669204][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 912.669206][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 912.669210][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 912.669212][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 912.669213][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 912.669214][ C2] PKRU: 55555554 [ 912.669216][ C2] Call Trace: [ 912.669220][ C2] [ 912.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 912.669229][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 912.669234][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 912.669239][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 912.669247][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 912.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 912.669254][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 912.669257][ C2] ? xa_store (lib/xarray.c:1734) [ 912.669264][ C2] xa_store (lib/xarray.c:1734) [ 912.669269][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 912.669275][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 912.669284][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 912.669289][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 912.669291][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 912.669298][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 912.669301][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 912.669310][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 912.669313][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 912.669318][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 912.669326][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 912.669330][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 912.669340][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 912.669344][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 912.669351][ C2] ksys_unshare (kernel/fork.c:3121) [ 912.669356][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 912.669359][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 912.669364][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 912.669367][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 912.669371][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 912.669378][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 912.669382][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 912.669387][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 912.669393][ C2] RIP: 0033:0x7f439756d93b [ 912.669398][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 912.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 912.669404][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 912.669406][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 912.669407][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 912.669409][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 912.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 916.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 916.669149][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 916.669153][ C1] softirqs last disabled at (0): 0x0 | [ 916.669166][ C1] Tainted: [L]=SOFTLOCKUP [ 916.669167][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 916.669170][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 916.669178][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 916.669181][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 916.669184][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 916.669186][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 916.669188][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 916.669189][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 916.669192][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 916.669194][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 916.669196][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 916.669199][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 916.669201][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 916.669203][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 916.669204][ C1] PKRU: 55555554 [ 916.669205][ C1] Call Trace: [ 916.669210][ C1] [ 916.669212][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 916.669224][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 916.669227][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 916.669233][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 916.669237][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 916.669245][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 916.669248][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 916.669251][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 916.669254][ C1] ? xa_store (lib/xarray.c:1734) [ 916.669261][ C1] xa_store (lib/xarray.c:1734) [ 916.669265][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 916.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 916.669276][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 916.669279][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 916.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.669289][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.669292][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 916.669300][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 916.669304][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 916.669309][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 916.669316][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 916.669321][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 916.669329][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 916.669333][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 916.669340][ C1] ksys_unshare (kernel/fork.c:3121) [ 916.669345][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 916.669349][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 916.669354][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 916.669357][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 916.669361][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 916.669368][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 916.669372][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 916.669378][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 916.669384][ C1] RIP: 0033:0x7f439756d93b [ 916.669390][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 916.669392][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 916.669395][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 916.669397][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 916.669399][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 916.669401][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 916.669403][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 916.670129][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 916.670136][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 916.670139][ C3] softirqs last disabled at (0): 0x0 | [ 916.670150][ C3] Tainted: [L]=SOFTLOCKUP [ 916.670151][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 916.670153][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 916.670159][ C3] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 916.670162][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000246 [ 916.670165][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 916.670167][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 916.670169][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 916.670171][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 916.670173][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 916.670175][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 916.670177][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 916.670181][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 916.670183][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 916.670184][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 916.670185][ C3] PKRU: 55555554 [ 916.670187][ C3] Call Trace: [ 916.670189][ C3] [ 916.670191][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 916.670197][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 916.670203][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 916.670206][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 916.670212][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 916.670217][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 916.670220][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 916.670224][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 916.670227][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 916.670231][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 916.670233][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 916.670236][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 916.670238][ C3] ? xas_alloc (lib/xarray.c:378) [ 916.670243][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 916.670248][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 916.670251][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 916.670254][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 916.670259][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 916.670264][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 916.670269][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670274][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 916.670279][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 916.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670287][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 916.670290][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 916.670294][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 916.670297][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 916.670300][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 916.670307][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 916.670310][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 916.670313][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 916.670318][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 916.670322][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 916.670326][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 916.670328][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 916.670332][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670336][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 916.670340][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 916.670345][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 916.670347][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 916.670353][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 916.670357][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670361][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 916.670365][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 916.670370][ C3] handle_softirqs (kernel/softirq.c:579) [ 916.670376][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 916.670379][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 916.670383][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 916.670387][ C3] [ 916.670388][ C3] [ 916.670389][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 916.670394][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 916.670397][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 916.670399][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 916.670402][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 916.670404][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 916.670406][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 916.670408][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 916.670409][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 916.670413][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 916.670419][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 916.670425][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 916.670429][ C3] ? xas_alloc (lib/xarray.c:378) [ 916.670433][ C3] ? xas_alloc (lib/xarray.c:378) [ 916.670436][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 916.670440][ C3] ? xas_alloc (lib/xarray.c:378) [ 916.670442][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 916.670447][ C3] xas_alloc (lib/xarray.c:378) [ 916.670452][ C3] xas_create (lib/xarray.c:685) [ 916.670459][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 916.670463][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 916.670467][ C3] __xa_store (lib/xarray.c:1703) [ 916.670471][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 916.670475][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 916.670478][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 916.670481][ C3] ? xa_store (lib/xarray.c:1734) [ 916.670487][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 916.670490][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 916.670493][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 916.670499][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 916.670502][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 916.670504][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670508][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 916.670511][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 916.670516][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 916.670519][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 916.670524][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 916.670528][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 916.670532][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 916.670539][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 916.670542][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 916.670547][ C3] ksys_unshare (kernel/fork.c:3121) [ 916.670552][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 916.670555][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 916.670558][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 916.670561][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 916.670564][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 916.670570][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 916.670573][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 916.670578][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 916.670581][ C3] RIP: 0033:0x7f439756d93b [ 916.670585][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 916.670587][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 916.670590][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 916.670592][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 916.670594][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 916.670596][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 916.670597][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 936.656135][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 936.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 936.656148][ C0] softirqs last disabled at (0): 0x0 | [ 936.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 936.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 936.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 936.656173][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 936.656176][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 936.656179][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 936.656182][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 936.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 936.656185][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 936.656187][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 936.656190][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 936.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 936.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 936.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 936.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 936.656200][ C0] PKRU: 55555554 [ 936.656202][ C0] Call Trace: [ 936.656205][ C0] [ 936.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 936.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 936.656217][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 936.656222][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 936.656229][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 936.656233][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 936.656235][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 936.656238][ C0] ? xa_store (lib/xarray.c:1734) [ 936.656245][ C0] xa_store (lib/xarray.c:1734) [ 936.656249][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 936.656255][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 936.656260][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 936.656262][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 936.656265][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 936.656272][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 936.656275][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 936.656283][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 936.656286][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 936.656291][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 936.656298][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 936.656303][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 936.656311][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 936.656315][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 936.656322][ C0] ksys_unshare (kernel/fork.c:3121) [ 936.656327][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 936.656331][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 936.656336][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 936.656339][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 936.656343][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 936.656349][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 936.656353][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 936.656359][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 936.656364][ C0] RIP: 0033:0x7f439756d93b [ 936.656376][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 936.656378][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 936.656382][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 936.656384][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 936.656386][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 936.656387][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 936.656389][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 940.669143][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 940.669153][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 940.669157][ C2] softirqs last disabled at (0): 0x0 | [ 940.669171][ C2] Tainted: [L]=SOFTLOCKUP [ 940.669173][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 940.669176][ C2] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 940.669184][ C2] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 940.669187][ C2] RSP: 0018:ffffc900034d7a10 EFLAGS: 00000202 [ 940.669190][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 940.669193][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 940.669195][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 940.669197][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 940.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 940.669201][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 940.669203][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 940.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 940.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 940.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 940.669211][ C2] PKRU: 55555554 [ 940.669212][ C2] Call Trace: [ 940.669218][ C2] [ 940.669220][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 940.669231][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 940.669234][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 940.669240][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 940.669244][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 940.669251][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 940.669254][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 940.669257][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 940.669260][ C2] ? xa_store (lib/xarray.c:1734) [ 940.669267][ C2] xa_store (lib/xarray.c:1734) [ 940.669272][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 940.669278][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 940.669283][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 940.669286][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 940.669289][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 940.669296][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 940.669299][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 940.669307][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 940.669311][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 940.669316][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 940.669323][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 940.669328][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 940.669337][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 940.669341][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 940.669348][ C2] ksys_unshare (kernel/fork.c:3121) [ 940.669353][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 940.669356][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 940.669362][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 940.669365][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 940.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 940.669376][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 940.669380][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 940.669385][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 940.669391][ C2] RIP: 0033:0x7f439756d93b [ 940.669396][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 940.669399][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 940.669402][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 940.669404][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 940.669406][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 940.669408][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 940.669410][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 944.669162][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 944.669178][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 944.669182][ C1] softirqs last disabled at (0): 0x0 | [ 944.669201][ C1] Tainted: [L]=SOFTLOCKUP [ 944.669202][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 944.669207][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 944.669221][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 944.669225][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 944.669229][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 944.669232][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 944.669234][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 944.669236][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 944.669238][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 944.669240][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 944.669243][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 944.669248][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 944.669250][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 944.669251][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 944.669253][ C1] PKRU: 55555554 [ 944.669254][ C1] Call Trace: [ 944.669261][ C1] [ 944.669266][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 944.669270][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 944.669277][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 944.669282][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 944.669291][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 944.669296][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 944.669299][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 944.669302][ C1] ? xa_store (lib/xarray.c:1734) [ 944.669311][ C1] xa_store (lib/xarray.c:1734) [ 944.669316][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 944.669325][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 944.669330][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 944.669334][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 944.669337][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.669346][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.669350][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 944.669360][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 944.669364][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 944.669370][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 944.669378][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 944.669384][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 944.669395][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 944.669400][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 944.669408][ C1] ksys_unshare (kernel/fork.c:3121) [ 944.669413][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 944.669417][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 944.669424][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 944.669428][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 944.669432][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 944.669442][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 944.669446][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 944.669455][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 944.669464][ C1] RIP: 0033:0x7f439756d93b [ 944.669469][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 944.669473][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 944.669477][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 944.669479][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 944.669481][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 944.669483][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 944.669484][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 944.670126][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 944.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 944.670136][ C3] softirqs last disabled at (0): 0x0 | [ 944.670146][ C3] Tainted: [L]=SOFTLOCKUP [ 944.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 944.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 944.670155][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 944.670159][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 944.670161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 944.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 944.670165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 944.670167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 944.670169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 944.670171][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 944.670174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 944.670177][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 944.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 944.670180][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 944.670182][ C3] PKRU: 55555554 [ 944.670183][ C3] Call Trace: [ 944.670185][ C3] [ 944.670187][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 944.670193][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 944.670198][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 944.670201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 944.670205][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 944.670210][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 944.670213][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 944.670216][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 944.670219][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 944.670223][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 944.670225][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 944.670228][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 944.670231][ C3] ? xas_alloc (lib/xarray.c:378) [ 944.670236][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 944.670240][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 944.670243][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 944.670247][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 944.670253][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 944.670257][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 944.670263][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670268][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 944.670274][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 944.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670282][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 944.670285][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 944.670289][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 944.670292][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 944.670295][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 944.670301][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 944.670303][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 944.670306][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 944.670311][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 944.670315][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 944.670318][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 944.670321][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 944.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 944.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 944.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 944.670341][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 944.670347][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 944.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670355][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 944.670359][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 944.670364][ C3] handle_softirqs (kernel/softirq.c:579) [ 944.670371][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 944.670375][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 944.670378][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 944.670382][ C3] [ 944.670383][ C3] [ 944.670385][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 944.670390][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 944.670393][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 944.670396][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 944.670399][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 944.670401][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 944.670403][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 944.670405][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 944.670407][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 944.670411][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 944.670417][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 944.670422][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 944.670426][ C3] ? xas_alloc (lib/xarray.c:378) [ 944.670430][ C3] ? xas_alloc (lib/xarray.c:378) [ 944.670433][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 944.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 944.670440][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 944.670446][ C3] xas_alloc (lib/xarray.c:378) [ 944.670451][ C3] xas_create (lib/xarray.c:685) [ 944.670458][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 944.670463][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 944.670467][ C3] __xa_store (lib/xarray.c:1703) [ 944.670472][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 944.670476][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 944.670479][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 944.670482][ C3] ? xa_store (lib/xarray.c:1734) [ 944.670487][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 944.670491][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 944.670494][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 944.670499][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 944.670501][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 944.670504][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670508][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 944.670511][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 944.670516][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 944.670520][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 944.670524][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 944.670528][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 944.670532][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 944.670539][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 944.670543][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 944.670547][ C3] ksys_unshare (kernel/fork.c:3121) [ 944.670552][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 944.670555][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 944.670559][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 944.670561][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 944.670565][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 944.670570][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 944.670574][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 944.670579][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 944.670582][ C3] RIP: 0033:0x7f439756d93b [ 944.670585][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 944.670587][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 944.670590][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 944.670592][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 944.670594][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 944.670595][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 944.670597][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 964.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 964.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 964.656151][ C0] softirqs last disabled at (0): 0x0 | [ 964.656162][ C0] Tainted: [L]=SOFTLOCKUP [ 964.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 964.656166][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 964.656176][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 964.656179][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 964.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 964.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 964.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 964.656194][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 964.656196][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 964.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 964.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 964.656205][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 964.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 964.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 964.656210][ C0] PKRU: 55555554 [ 964.656212][ C0] Call Trace: [ 964.656216][ C0] [ 964.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 964.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 964.656229][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 964.656233][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 964.656241][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 964.656245][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 964.656247][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 964.656250][ C0] ? xa_store (lib/xarray.c:1734) [ 964.656258][ C0] xa_store (lib/xarray.c:1734) [ 964.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 964.656269][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 964.656274][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 964.656277][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 964.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 964.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 964.656291][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 964.656298][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 964.656302][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 964.656307][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 964.656314][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 964.656319][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 964.656328][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 964.656332][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 964.656339][ C0] ksys_unshare (kernel/fork.c:3121) [ 964.656344][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 964.656347][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 964.656352][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 964.656356][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 964.656360][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 964.656366][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 964.656371][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 964.656376][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 964.656381][ C0] RIP: 0033:0x7f439756d93b [ 964.656385][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 964.656388][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 964.656392][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 964.656394][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 964.656396][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 964.656398][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 964.656400][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 968.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 968.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 968.669147][ C2] softirqs last disabled at (0): 0x0 | [ 968.669160][ C2] Tainted: [L]=SOFTLOCKUP [ 968.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 968.669164][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 968.669172][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 968.669175][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 968.669178][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 968.669181][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 968.669183][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 968.669185][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 968.669187][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 968.669189][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 968.669192][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 968.669196][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 968.669198][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 968.669200][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 968.669201][ C2] PKRU: 55555554 [ 968.669202][ C2] Call Trace: [ 968.669207][ C2] [ 968.669210][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 968.669214][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 968.669219][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 968.669223][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 968.669230][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 968.669233][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 968.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 968.669240][ C2] ? xa_store (lib/xarray.c:1734) [ 968.669246][ C2] xa_store (lib/xarray.c:1734) [ 968.669250][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 968.669256][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 968.669261][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 968.669264][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 968.669267][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 968.669273][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 968.669276][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 968.669283][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 968.669287][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 968.669292][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 968.669298][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 968.669303][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 968.669311][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 968.669315][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 968.669321][ C2] ksys_unshare (kernel/fork.c:3121) [ 968.669326][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 968.669330][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 968.669334][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 968.669337][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 968.669341][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 968.669347][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 968.669351][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 968.669356][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 968.669361][ C2] RIP: 0033:0x7f439756d93b [ 968.669367][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 968.669370][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 968.669373][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 968.669376][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 968.669378][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 968.669380][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 968.669382][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 970.066701][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 970.066981][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 970.067237][ C1] NMI backtrace for cpu 1 | [ 970.067255][ C1] Tainted: [L]=SOFTLOCKUP [ 970.067257][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 970.067259][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 970.067267][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 970.067270][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 970.067274][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 970.067277][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 970.067279][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 970.067281][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 970.067283][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 970.067285][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 970.067287][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 970.067292][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 970.067294][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 970.067295][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 970.067297][ C1] PKRU: 55555554 [ 970.067298][ C1] Call Trace: [ 970.067301][ C1] [ 970.067304][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 970.067308][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 970.067312][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 970.067316][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 970.067323][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 970.067327][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 970.067330][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 970.067333][ C1] ? xa_store (lib/xarray.c:1734) [ 970.067340][ C1] xa_store (lib/xarray.c:1734) [ 970.067344][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 970.067350][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 970.067356][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 970.067359][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 970.067361][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.067367][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.067370][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 970.067378][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 970.067382][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 970.067387][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 970.067394][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 970.067399][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 970.067407][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 970.067411][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 970.067417][ C1] ksys_unshare (kernel/fork.c:3121) [ 970.067426][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 970.067430][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 970.067435][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 970.067438][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 970.067442][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 970.067450][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 970.067454][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 970.067460][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 970.067464][ C1] RIP: 0033:0x7f439756d93b [ 970.067470][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 970.067473][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 970.067476][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 970.067479][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 970.067481][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 970.067482][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 970.067484][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 970.067482][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 970.067484][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 970.067490][ C1] | [ 970.068238][ C3] Tainted: [L]=SOFTLOCKUP [ 970.068240][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 970.068242][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 970.068247][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 970.068250][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 970.068253][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 970.068255][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 970.068257][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 970.068259][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 970.068261][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 970.068263][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 970.068265][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 970.068269][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 970.068271][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 970.068273][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 970.068275][ C3] PKRU: 55555554 [ 970.068276][ C3] Call Trace: [ 970.068278][ C3] [ 970.068279][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 970.068286][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 970.068291][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 970.068294][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 970.068298][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 970.068304][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 970.068308][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 970.068312][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 970.068315][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 970.068319][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 970.068322][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 970.068325][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 970.068328][ C3] ? xas_alloc (lib/xarray.c:378) [ 970.068333][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 970.068336][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 970.068340][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 970.068344][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 970.068349][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 970.068353][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 970.068358][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068362][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 970.068367][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 970.068372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068375][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 970.068378][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 970.068382][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 970.068385][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 970.068388][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 970.068395][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 970.068398][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 970.068401][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 970.068406][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 970.068409][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 970.068413][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 970.068416][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 970.068421][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068424][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 970.068429][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 970.068433][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 970.068437][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 970.068442][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 970.068446][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068449][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 970.068454][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 970.068457][ C3] handle_softirqs (kernel/softirq.c:579) [ 970.068463][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 970.068467][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 970.068470][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 970.068473][ C3] [ 970.068474][ C3] [ 970.068476][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 970.068480][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 970.068483][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 970.068486][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 970.068488][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 970.068490][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 970.068491][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 970.068493][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 970.068495][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 970.068498][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 970.068504][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 970.068509][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 970.068513][ C3] ? xas_alloc (lib/xarray.c:378) [ 970.068517][ C3] ? xas_alloc (lib/xarray.c:378) [ 970.068520][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 970.068524][ C3] ? xas_alloc (lib/xarray.c:378) [ 970.068526][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 970.068531][ C3] xas_alloc (lib/xarray.c:378) [ 970.068535][ C3] xas_create (lib/xarray.c:685) [ 970.068541][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 970.068545][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 970.068549][ C3] __xa_store (lib/xarray.c:1703) [ 970.068553][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 970.068557][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 970.068560][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 970.068563][ C3] ? xa_store (lib/xarray.c:1734) [ 970.068568][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 970.068572][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 970.068575][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 970.068580][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 970.068582][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 970.068585][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068589][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 970.068592][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 970.068597][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 970.068600][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 970.068605][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 970.068609][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 970.068613][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 970.068620][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 970.068624][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 970.068629][ C3] ksys_unshare (kernel/fork.c:3121) [ 970.068633][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 970.068637][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 970.068640][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 970.068643][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 970.068646][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 970.068652][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 970.068656][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 970.068660][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 970.068663][ C3] RIP: 0033:0x7f439756d93b [ 970.068668][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 970.068670][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 970.068673][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 970.068675][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 970.068677][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 970.068679][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 970.068681][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 992.656137][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 992.656145][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 992.656149][ C0] softirqs last disabled at (0): 0x0 | [ 992.656162][ C0] Tainted: [L]=SOFTLOCKUP [ 992.656163][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 992.656166][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 992.656175][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 992.656179][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 992.656182][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 992.656185][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 992.656187][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 992.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 992.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 992.656193][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 992.656195][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 992.656200][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 992.656202][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 992.656204][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 992.656205][ C0] PKRU: 55555554 [ 992.656206][ C0] Call Trace: [ 992.656209][ C0] [ 992.656212][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 992.656216][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 992.656221][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 992.656226][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 992.656234][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 992.656237][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 992.656240][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 992.656243][ C0] ? xa_store (lib/xarray.c:1734) [ 992.656250][ C0] xa_store (lib/xarray.c:1734) [ 992.656254][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 992.656260][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 992.656265][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 992.656268][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 992.656271][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 992.656278][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 992.656281][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 992.656289][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 992.656292][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 992.656298][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 992.656305][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 992.656310][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 992.656318][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 992.656322][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 992.656329][ C0] ksys_unshare (kernel/fork.c:3121) [ 992.656334][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 992.656337][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 992.656342][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 992.656345][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 992.656349][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 992.656356][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 992.656361][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 992.656366][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 992.656371][ C0] RIP: 0033:0x7f439756d93b [ 992.656376][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 992.656379][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 992.656382][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 992.656385][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 992.656387][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 992.656389][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 992.656390][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 996.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 996.669149][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 996.669152][ C1] softirqs last disabled at (0): 0x0 | [ 996.669166][ C1] Tainted: [L]=SOFTLOCKUP [ 996.669168][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 996.669170][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 996.669179][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 996.669182][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 996.669186][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 996.669188][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 996.669190][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 996.669192][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 996.669194][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 996.669196][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 996.669199][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 996.669202][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 996.669204][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 996.669205][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 996.669207][ C1] PKRU: 55555554 [ 996.669208][ C1] Call Trace: [ 996.669213][ C1] [ 996.669215][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 996.669227][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 996.669230][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.669236][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.669240][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 996.669247][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 996.669251][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.669254][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.669257][ C1] ? xa_store (lib/xarray.c:1734) [ 996.669264][ C1] xa_store (lib/xarray.c:1734) [ 996.669269][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 996.669275][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 996.669280][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.669283][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.669286][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.669293][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.669296][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 996.669304][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 996.669308][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 996.669313][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 996.669320][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 996.669325][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 996.669334][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 996.669338][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 996.669344][ C1] ksys_unshare (kernel/fork.c:3121) [ 996.669349][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 996.669353][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 996.669358][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 996.669361][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 996.669365][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 996.669372][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 996.669376][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 996.669382][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 996.669387][ C1] RIP: 0033:0x7f439756d93b [ 996.669391][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 996.669394][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 996.669398][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 996.669400][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 996.669402][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 996.669404][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 996.669406][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 996.669441][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 996.669447][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 996.669451][ C2] softirqs last disabled at (0): 0x0 | [ 996.669462][ C2] Tainted: [L]=SOFTLOCKUP [ 996.669463][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 996.669465][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 996.669472][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 996.669475][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 996.669478][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 996.669480][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 996.669482][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 996.669484][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 996.669486][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 996.669488][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 996.669491][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 996.669494][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 996.669496][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 996.669498][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 996.669499][ C2] PKRU: 55555554 [ 996.669501][ C2] Call Trace: [ 996.669503][ C2] [ 996.669506][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 996.669510][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.669515][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.669518][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 996.669524][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 996.669527][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.669530][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.669533][ C2] ? xa_store (lib/xarray.c:1734) [ 996.669539][ C2] xa_store (lib/xarray.c:1734) [ 996.669543][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 996.669548][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 996.669553][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.669555][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.669558][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.669564][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.669567][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 996.669573][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 996.669577][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 996.669582][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 996.669587][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 996.669591][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 996.669599][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 996.669603][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 996.669608][ C2] ksys_unshare (kernel/fork.c:3121) [ 996.669612][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 996.669616][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 996.669620][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 996.669623][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 996.669627][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 996.669632][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 996.669636][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 996.669641][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 996.669645][ C2] RIP: 0033:0x7f439756d93b [ 996.669650][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 996.669653][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 996.669656][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 996.669658][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 996.669660][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 996.669662][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 996.669664][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 996.670121][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 996.670127][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 996.670130][ C3] softirqs last disabled at (0): 0x0 | [ 996.670139][ C3] Tainted: [L]=SOFTLOCKUP [ 996.670141][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 996.670142][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 996.670148][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 996.670151][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 996.670153][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 996.670155][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 996.670157][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 996.670159][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 996.670161][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 996.670163][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 996.670165][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 996.670169][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 996.670171][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 996.670172][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 996.670173][ C3] PKRU: 55555554 [ 996.670175][ C3] Call Trace: [ 996.670176][ C3] [ 996.670177][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 996.670183][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 996.670188][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 996.670191][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 996.670196][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 996.670200][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 996.670203][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 996.670207][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 996.670210][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 996.670214][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 996.670216][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 996.670219][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 996.670222][ C3] ? xas_alloc (lib/xarray.c:378) [ 996.670227][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 996.670230][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.670233][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.670236][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 996.670242][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 996.670246][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 996.670252][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670256][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 996.670260][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 996.670264][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670268][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 996.670271][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 996.670274][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 996.670277][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 996.670280][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 996.670286][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 996.670289][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 996.670292][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 996.670297][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 996.670300][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 996.670303][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 996.670306][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 996.670310][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670314][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 996.670317][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 996.670322][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 996.670324][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 996.670330][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 996.670334][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670337][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 996.670342][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 996.670346][ C3] handle_softirqs (kernel/softirq.c:579) [ 996.670352][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 996.670356][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 996.670359][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 996.670363][ C3] [ 996.670364][ C3] [ 996.670366][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 996.670370][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 996.670373][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 996.670375][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 996.670378][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 996.670380][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 996.670381][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 996.670383][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 996.670385][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 996.670389][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 996.670395][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 996.670401][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 996.670405][ C3] ? xas_alloc (lib/xarray.c:378) [ 996.670409][ C3] ? xas_alloc (lib/xarray.c:378) [ 996.670412][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 996.670416][ C3] ? xas_alloc (lib/xarray.c:378) [ 996.670419][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 996.670424][ C3] xas_alloc (lib/xarray.c:378) [ 996.670429][ C3] xas_create (lib/xarray.c:685) [ 996.670435][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 996.670439][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.670443][ C3] __xa_store (lib/xarray.c:1703) [ 996.670447][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 996.670452][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.670454][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 996.670457][ C3] ? xa_store (lib/xarray.c:1734) [ 996.670462][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 996.670466][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 996.670469][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 996.670473][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 996.670476][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 996.670479][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670483][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 996.670486][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 996.670491][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 996.670495][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 996.670499][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 996.670503][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 996.670507][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 996.670513][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 996.670516][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 996.670521][ C3] ksys_unshare (kernel/fork.c:3121) [ 996.670525][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 996.670528][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 996.670531][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 996.670534][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 996.670537][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 996.670542][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 996.670546][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 996.670551][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 996.670554][ C3] RIP: 0033:0x7f439756d93b [ 996.670556][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 996.670559][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 996.670562][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 996.670564][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 996.670566][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 996.670568][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 996.670570][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1020.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1020.656145][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1020.656149][ C0] softirqs last disabled at (0): 0x0 | [ 1020.656162][ C0] Tainted: [L]=SOFTLOCKUP [ 1020.656163][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1020.656165][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1020.656174][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1020.656177][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1020.656181][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1020.656183][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1020.656185][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1020.656187][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1020.656189][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1020.656191][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1020.656193][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1020.656198][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1020.656199][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1020.656201][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1020.656202][ C0] PKRU: 55555554 [ 1020.656204][ C0] Call Trace: [ 1020.656207][ C0] [ 1020.656211][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1020.656215][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1020.656220][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1020.656224][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1020.656232][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1020.656235][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1020.656238][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1020.656241][ C0] ? xa_store (lib/xarray.c:1734) [ 1020.656247][ C0] xa_store (lib/xarray.c:1734) [ 1020.656252][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1020.656258][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1020.656263][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1020.656266][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1020.656268][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1020.656276][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1020.656280][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1020.656287][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1020.656290][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1020.656295][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1020.656303][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1020.656308][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1020.656316][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1020.656320][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1020.656326][ C0] ksys_unshare (kernel/fork.c:3121) [ 1020.656331][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1020.656335][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1020.656339][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1020.656343][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1020.656347][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1020.656354][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1020.656358][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1020.656364][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1020.656368][ C0] RIP: 0033:0x7f439756d93b [ 1020.656373][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1020.656376][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1020.656379][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1020.656382][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1020.656383][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1020.656385][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1020.656387][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1024.669140][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1024.669151][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1024.669154][ C2] softirqs last disabled at (0): 0x0 | [ 1024.669168][ C2] Tainted: [L]=SOFTLOCKUP [ 1024.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1024.669173][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1024.669183][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1024.669187][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1024.669190][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1024.669192][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1024.669195][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1024.669197][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1024.669199][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1024.669201][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1024.669203][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1024.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1024.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1024.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1024.669212][ C2] PKRU: 55555554 [ 1024.669213][ C2] Call Trace: [ 1024.669218][ C2] [ 1024.669222][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1024.669226][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.669231][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.669236][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1024.669244][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1024.669248][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.669251][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.669254][ C2] ? xa_store (lib/xarray.c:1734) [ 1024.669261][ C2] xa_store (lib/xarray.c:1734) [ 1024.669266][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1024.669272][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1024.669277][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.669280][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.669283][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.669290][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.669294][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1024.669301][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1024.669305][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1024.669311][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1024.669319][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1024.669324][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1024.669333][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1024.669337][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1024.669344][ C2] ksys_unshare (kernel/fork.c:3121) [ 1024.669349][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1024.669352][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1024.669358][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1024.669361][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1024.669365][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1024.669372][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1024.669376][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1024.669382][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1024.669387][ C2] RIP: 0033:0x7f439756d93b [ 1024.669392][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1024.669395][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1024.669398][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1024.669400][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1024.669403][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1024.669405][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1024.669406][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1024.669440][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1024.669446][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1024.669450][ C1] softirqs last disabled at (0): 0x0 | [ 1024.669461][ C1] Tainted: [L]=SOFTLOCKUP [ 1024.669462][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1024.669464][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1024.669470][ C1] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1024.669473][ C1] RSP: 0018:ffffc900034b7a00 EFLAGS: 00000282 [ 1024.669476][ C1] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1024.669478][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1024.669480][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1024.669482][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1024.669484][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1024.669486][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1024.669488][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1024.669492][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1024.669493][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1024.669495][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1024.669497][ C1] PKRU: 55555554 [ 1024.669498][ C1] Call Trace: [ 1024.669500][ C1] [ 1024.669503][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1024.669509][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1024.669512][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.669516][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.669519][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1024.669525][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1024.669528][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.669531][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.669534][ C1] ? xa_store (lib/xarray.c:1734) [ 1024.669539][ C1] xa_store (lib/xarray.c:1734) [ 1024.669544][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1024.669548][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1024.669553][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.669557][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.669559][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.669565][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.669568][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1024.669574][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1024.669578][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1024.669583][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1024.669587][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1024.669592][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1024.669600][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1024.669603][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1024.669608][ C1] ksys_unshare (kernel/fork.c:3121) [ 1024.669613][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1024.669616][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1024.669620][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1024.669623][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1024.669627][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1024.669633][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1024.669637][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1024.669641][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1024.669645][ C1] RIP: 0033:0x7f439756d93b [ 1024.669650][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1024.669652][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1024.669656][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1024.669658][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1024.669660][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1024.669661][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1024.669663][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1024.670120][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1024.670126][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1024.670129][ C3] softirqs last disabled at (0): 0x0 | [ 1024.670138][ C3] Tainted: [L]=SOFTLOCKUP [ 1024.670139][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1024.670141][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1024.670145][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1024.670148][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1024.670151][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1024.670153][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1024.670155][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1024.670157][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1024.670159][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1024.670161][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1024.670163][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1024.670167][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1024.670169][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1024.670170][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1024.670172][ C3] PKRU: 55555554 [ 1024.670173][ C3] Call Trace: [ 1024.670175][ C3] [ 1024.670176][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1024.670181][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1024.670186][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1024.670190][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1024.670195][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1024.670200][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1024.670203][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1024.670207][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1024.670210][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1024.670213][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1024.670216][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1024.670218][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1024.670221][ C3] ? xas_alloc (lib/xarray.c:378) [ 1024.670226][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1024.670229][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.670232][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.670235][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1024.670240][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1024.670244][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1024.670250][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670254][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1024.670258][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1024.670262][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670265][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1024.670268][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1024.670271][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1024.670275][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1024.670278][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1024.670283][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1024.670286][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1024.670290][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1024.670294][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1024.670298][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1024.670301][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1024.670304][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1024.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670311][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1024.670315][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1024.670320][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1024.670323][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1024.670328][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1024.670332][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670335][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1024.670341][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1024.670345][ C3] handle_softirqs (kernel/softirq.c:579) [ 1024.670351][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1024.670354][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1024.670357][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1024.670362][ C3] [ 1024.670363][ C3] [ 1024.670364][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1024.670368][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1024.670371][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1024.670374][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1024.670376][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1024.670378][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1024.670380][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1024.670382][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1024.670384][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1024.670388][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1024.670393][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1024.670398][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1024.670403][ C3] ? xas_alloc (lib/xarray.c:378) [ 1024.670407][ C3] ? xas_alloc (lib/xarray.c:378) [ 1024.670410][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1024.670414][ C3] ? xas_alloc (lib/xarray.c:378) [ 1024.670417][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1024.670422][ C3] xas_alloc (lib/xarray.c:378) [ 1024.670426][ C3] xas_create (lib/xarray.c:685) [ 1024.670432][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1024.670437][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.670441][ C3] __xa_store (lib/xarray.c:1703) [ 1024.670445][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1024.670449][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.670452][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1024.670455][ C3] ? xa_store (lib/xarray.c:1734) [ 1024.670459][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1024.670463][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1024.670466][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1024.670471][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1024.670474][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1024.670476][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670480][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1024.670484][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1024.670488][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1024.670492][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1024.670496][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1024.670500][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1024.670504][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1024.670511][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1024.670514][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1024.670519][ C3] ksys_unshare (kernel/fork.c:3121) [ 1024.670523][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1024.670526][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1024.670530][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1024.670532][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1024.670536][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1024.670541][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1024.670545][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1024.670550][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1024.670553][ C3] RIP: 0033:0x7f439756d93b [ 1024.670556][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1024.670559][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1024.670561][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1024.670563][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1024.670565][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1024.670567][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1024.670569][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1048.079018][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1048.079302][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1048.079541][ C1] NMI backtrace for cpu 1 | [ 1048.079557][ C1] Tainted: [L]=SOFTLOCKUP [ 1048.079559][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1048.079561][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1048.079569][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1048.079572][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1048.079577][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1048.079579][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1048.079581][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1048.079583][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1048.079585][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1048.079587][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1048.079590][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1048.079593][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1048.079595][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1048.079597][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1048.079599][ C1] PKRU: 55555554 [ 1048.079600][ C1] Call Trace: [ 1048.079602][ C1] [ 1048.079605][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1048.079610][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.079614][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.079618][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1048.079625][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1048.079628][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.079631][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.079634][ C1] ? xa_store (lib/xarray.c:1734) [ 1048.079641][ C1] xa_store (lib/xarray.c:1734) [ 1048.079645][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1048.079650][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1048.079656][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.079659][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.079662][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.079667][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.079670][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1048.079678][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1048.079682][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1048.079687][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1048.079694][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1048.079699][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1048.079707][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1048.079711][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1048.079718][ C1] ksys_unshare (kernel/fork.c:3121) [ 1048.079724][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1048.079728][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1048.079734][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1048.079737][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1048.079740][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1048.079747][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1048.079751][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1048.079756][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1048.079761][ C1] RIP: 0033:0x7f439756d93b [ 1048.079765][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1048.079768][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1048.079771][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1048.079773][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1048.079775][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1048.079777][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1048.079779][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1048.079777][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1048.079779][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1048.079785][ C1] | [ 1048.080543][ C3] Tainted: [L]=SOFTLOCKUP [ 1048.080544][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1048.080546][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1048.080551][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1048.080554][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1048.080557][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1048.080559][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1048.080561][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1048.080563][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1048.080564][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1048.080566][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1048.080569][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1048.080572][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1048.080575][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1048.080577][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1048.080578][ C3] PKRU: 55555554 [ 1048.080580][ C3] Call Trace: [ 1048.080581][ C3] [ 1048.080582][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1048.080588][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1048.080593][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1048.080596][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1048.080600][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1048.080605][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1048.080608][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1048.080613][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1048.080616][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1048.080620][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1048.080622][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1048.080625][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1048.080627][ C3] ? xas_alloc (lib/xarray.c:378) [ 1048.080632][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1048.080636][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.080638][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.080642][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1048.080647][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1048.080651][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1048.080656][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080659][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1048.080665][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1048.080669][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080672][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1048.080674][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1048.080678][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1048.080681][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1048.080683][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1048.080690][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1048.080692][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1048.080695][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1048.080700][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1048.080703][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1048.080706][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1048.080709][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1048.080714][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080717][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1048.080721][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1048.080726][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1048.080729][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1048.080734][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1048.080738][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080741][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1048.080746][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1048.080750][ C3] handle_softirqs (kernel/softirq.c:579) [ 1048.080755][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1048.080758][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1048.080761][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1048.080765][ C3] [ 1048.080766][ C3] [ 1048.080768][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1048.080772][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1048.080775][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1048.080777][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1048.080780][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1048.080782][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1048.080783][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1048.080785][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1048.080787][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1048.080791][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1048.080796][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1048.080801][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1048.080805][ C3] ? xas_alloc (lib/xarray.c:378) [ 1048.080809][ C3] ? xas_alloc (lib/xarray.c:378) [ 1048.080812][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1048.080816][ C3] ? xas_alloc (lib/xarray.c:378) [ 1048.080818][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1048.080823][ C3] xas_alloc (lib/xarray.c:378) [ 1048.080827][ C3] xas_create (lib/xarray.c:685) [ 1048.080833][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1048.080837][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.080841][ C3] __xa_store (lib/xarray.c:1703) [ 1048.080845][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1048.080849][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.080852][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.080855][ C3] ? xa_store (lib/xarray.c:1734) [ 1048.080860][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1048.080864][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1048.080867][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1048.080872][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.080874][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.080877][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080881][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.080884][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1048.080889][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1048.080893][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1048.080897][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1048.080901][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1048.080905][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1048.080911][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1048.080915][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1048.080920][ C3] ksys_unshare (kernel/fork.c:3121) [ 1048.080925][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1048.080928][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1048.080932][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1048.080935][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1048.080939][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1048.080945][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1048.080949][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1048.080953][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1048.080956][ C3] RIP: 0033:0x7f439756d93b [ 1048.080961][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1048.080963][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1048.080966][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1048.080968][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1048.080969][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1048.080971][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1048.080973][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1048.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1048.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1048.656148][ C0] softirqs last disabled at (0): 0x0 | [ 1048.656161][ C0] Tainted: [L]=SOFTLOCKUP [ 1048.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1048.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1048.656174][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1048.656177][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1048.656180][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1048.656183][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1048.656185][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1048.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1048.656189][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1048.656191][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1048.656193][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1048.656197][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1048.656199][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1048.656201][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1048.656202][ C0] PKRU: 55555554 [ 1048.656203][ C0] Call Trace: [ 1048.656207][ C0] [ 1048.656210][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1048.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.656219][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1048.656231][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1048.656234][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1048.656240][ C0] ? xa_store (lib/xarray.c:1734) [ 1048.656247][ C0] xa_store (lib/xarray.c:1734) [ 1048.656252][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1048.656258][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1048.656263][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1048.656266][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1048.656269][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1048.656279][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1048.656287][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1048.656290][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1048.656296][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1048.656303][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1048.656308][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1048.656317][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1048.656321][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1048.656328][ C0] ksys_unshare (kernel/fork.c:3121) [ 1048.656333][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1048.656336][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1048.656341][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1048.656345][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1048.656348][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1048.656355][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1048.656359][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1048.656365][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1048.656370][ C0] RIP: 0033:0x7f439756d93b [ 1048.656374][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1048.656377][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1048.656381][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1048.656383][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1048.656385][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1048.656387][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1048.656389][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1052.669140][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1052.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1052.669153][ C2] softirqs last disabled at (0): 0x0 | [ 1052.669166][ C2] Tainted: [L]=SOFTLOCKUP [ 1052.669168][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1052.669171][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1052.669180][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1052.669184][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1052.669187][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1052.669190][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1052.669192][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1052.669194][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1052.669196][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1052.669198][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1052.669201][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1052.669204][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1052.669206][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1052.669208][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1052.669209][ C2] PKRU: 55555554 [ 1052.669211][ C2] Call Trace: [ 1052.669215][ C2] [ 1052.669218][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1052.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1052.669228][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1052.669232][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1052.669240][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1052.669244][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1052.669246][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1052.669249][ C2] ? xa_store (lib/xarray.c:1734) [ 1052.669256][ C2] xa_store (lib/xarray.c:1734) [ 1052.669261][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1052.669267][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1052.669273][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1052.669276][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1052.669278][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1052.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1052.669289][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1052.669297][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1052.669301][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1052.669306][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1052.669314][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1052.669319][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1052.669328][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1052.669332][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1052.669338][ C2] ksys_unshare (kernel/fork.c:3121) [ 1052.669343][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1052.669347][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1052.669352][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1052.669355][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1052.669359][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1052.669367][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1052.669371][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1052.669377][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1052.669382][ C2] RIP: 0033:0x7f439756d93b [ 1052.669387][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1052.669390][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1052.669393][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1052.669395][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1052.669397][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1052.669399][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1052.669401][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1072.669143][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1072.669153][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1072.669156][ C1] softirqs last disabled at (0): 0x0 | [ 1072.669170][ C1] Tainted: [L]=SOFTLOCKUP [ 1072.669172][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1072.669174][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1072.669184][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1072.669188][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1072.669191][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1072.669193][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1072.669196][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1072.669198][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1072.669200][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1072.669201][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1072.669204][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1072.669208][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1072.669210][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1072.669211][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1072.669213][ C1] PKRU: 55555554 [ 1072.669214][ C1] Call Trace: [ 1072.669219][ C1] [ 1072.669223][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1072.669226][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1072.669232][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1072.669236][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1072.669244][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1072.669248][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1072.669251][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1072.669254][ C1] ? xa_store (lib/xarray.c:1734) [ 1072.669261][ C1] xa_store (lib/xarray.c:1734) [ 1072.669266][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1072.669272][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1072.669277][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1072.669280][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1072.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.669290][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.669293][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1072.669301][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1072.669305][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1072.669310][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1072.669318][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1072.669323][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1072.669333][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1072.669337][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1072.669344][ C1] ksys_unshare (kernel/fork.c:3121) [ 1072.669349][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1072.669352][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1072.669357][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1072.669361][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1072.669364][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1072.669372][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1072.669376][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1072.669382][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1072.669388][ C1] RIP: 0033:0x7f439756d93b [ 1072.669393][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1072.669397][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1072.669400][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1072.669402][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1072.669404][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1072.669406][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1072.669408][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1072.670126][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1072.670132][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1072.670135][ C3] softirqs last disabled at (0): 0x0 | [ 1072.670145][ C3] Tainted: [L]=SOFTLOCKUP [ 1072.670146][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1072.670148][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1072.670154][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1072.670156][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1072.670159][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1072.670161][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1072.670163][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1072.670165][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1072.670167][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1072.670169][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1072.670172][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1072.670175][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1072.670177][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1072.670178][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1072.670180][ C3] PKRU: 55555554 [ 1072.670181][ C3] Call Trace: [ 1072.670183][ C3] [ 1072.670185][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1072.670190][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1072.670195][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1072.670198][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1072.670203][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1072.670208][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1072.670212][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1072.670215][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1072.670218][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1072.670222][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1072.670225][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1072.670227][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1072.670230][ C3] ? xas_alloc (lib/xarray.c:378) [ 1072.670235][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1072.670239][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1072.670241][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1072.670245][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1072.670250][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1072.670254][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1072.670259][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670264][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1072.670269][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1072.670274][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670277][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1072.670280][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1072.670283][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1072.670287][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1072.670290][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1072.670296][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1072.670299][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1072.670302][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1072.670306][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1072.670310][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1072.670313][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1072.670316][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1072.670320][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670323][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1072.670327][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1072.670333][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1072.670335][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1072.670341][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1072.670345][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670348][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1072.670353][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1072.670357][ C3] handle_softirqs (kernel/softirq.c:579) [ 1072.670363][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1072.670367][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1072.670370][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1072.670374][ C3] [ 1072.670374][ C3] [ 1072.670376][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1072.670380][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1072.670383][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1072.670386][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1072.670388][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1072.670390][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1072.670391][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1072.670393][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1072.670395][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1072.670399][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1072.670405][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1072.670410][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1072.670414][ C3] ? xas_alloc (lib/xarray.c:378) [ 1072.670419][ C3] ? xas_alloc (lib/xarray.c:378) [ 1072.670422][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1072.670426][ C3] ? xas_alloc (lib/xarray.c:378) [ 1072.670429][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1072.670434][ C3] xas_alloc (lib/xarray.c:378) [ 1072.670439][ C3] xas_create (lib/xarray.c:685) [ 1072.670445][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1072.670449][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1072.670452][ C3] __xa_store (lib/xarray.c:1703) [ 1072.670456][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1072.670461][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1072.670464][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1072.670466][ C3] ? xa_store (lib/xarray.c:1734) [ 1072.670471][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1072.670475][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1072.670478][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1072.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1072.670486][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1072.670488][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670492][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1072.670496][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1072.670501][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1072.670505][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1072.670509][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1072.670513][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1072.670518][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1072.670525][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1072.670529][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1072.670533][ C3] ksys_unshare (kernel/fork.c:3121) [ 1072.670537][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1072.670541][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1072.670544][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1072.670547][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1072.670551][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1072.670556][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1072.670560][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1072.670565][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1072.670568][ C3] RIP: 0033:0x7f439756d93b [ 1072.670572][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1072.670575][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1072.670577][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1072.670580][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1072.670582][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1072.670583][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1072.670585][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1076.656137][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1076.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1076.656150][ C0] softirqs last disabled at (0): 0x0 | [ 1076.656163][ C0] Tainted: [L]=SOFTLOCKUP [ 1076.656165][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1076.656167][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1076.656174][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1076.656177][ C0] RSP: 0018:ffffc900034c7a00 EFLAGS: 00000282 [ 1076.656181][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1076.656183][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1076.656185][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1076.656187][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1076.656189][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1076.656191][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1076.656194][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1076.656198][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1076.656200][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1076.656202][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1076.656203][ C0] PKRU: 55555554 [ 1076.656205][ C0] Call Trace: [ 1076.656208][ C0] [ 1076.656212][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1076.656222][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1076.656226][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1076.656231][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1076.656235][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1076.656242][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1076.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1076.656249][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1076.656252][ C0] ? xa_store (lib/xarray.c:1734) [ 1076.656259][ C0] xa_store (lib/xarray.c:1734) [ 1076.656264][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1076.656269][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1076.656275][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1076.656277][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1076.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1076.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1076.656291][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1076.656298][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1076.656302][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1076.656307][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1076.656315][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1076.656319][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1076.656327][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1076.656332][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1076.656339][ C0] ksys_unshare (kernel/fork.c:3121) [ 1076.656344][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1076.656347][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1076.656352][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1076.656355][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1076.656359][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1076.656366][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1076.656370][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1076.656375][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1076.656380][ C0] RIP: 0033:0x7f439756d93b [ 1076.656384][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1076.656387][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1076.656389][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1076.656392][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1076.656393][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1076.656395][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1076.656397][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1080.669139][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1080.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1080.669153][ C2] softirqs last disabled at (0): 0x0 | [ 1080.669166][ C2] Tainted: [L]=SOFTLOCKUP [ 1080.669167][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1080.669170][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1080.669180][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1080.669183][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1080.669186][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1080.669189][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1080.669191][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1080.669193][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1080.669195][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1080.669196][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1080.669199][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1080.669202][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1080.669204][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1080.669206][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1080.669208][ C2] PKRU: 55555554 [ 1080.669209][ C2] Call Trace: [ 1080.669213][ C2] [ 1080.669217][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1080.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1080.669226][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1080.669231][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1080.669239][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1080.669243][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1080.669246][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1080.669249][ C2] ? xa_store (lib/xarray.c:1734) [ 1080.669256][ C2] xa_store (lib/xarray.c:1734) [ 1080.669260][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1080.669266][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1080.669272][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1080.669274][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1080.669277][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1080.669284][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1080.669288][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1080.669295][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1080.669299][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1080.669304][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1080.669312][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1080.669317][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1080.669326][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1080.669330][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1080.669337][ C2] ksys_unshare (kernel/fork.c:3121) [ 1080.669342][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1080.669345][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1080.669350][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1080.669354][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1080.669357][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1080.669365][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1080.669369][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1080.669375][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1080.669380][ C2] RIP: 0033:0x7f439756d93b [ 1080.669385][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1080.669387][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1080.669391][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1080.669393][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1080.669395][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1080.669397][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1080.669399][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1100.669141][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1100.669151][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1100.669154][ C1] softirqs last disabled at (0): 0x0 | [ 1100.669167][ C1] Tainted: [L]=SOFTLOCKUP [ 1100.669169][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1100.669172][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1100.669183][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1100.669186][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1100.669189][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1100.669192][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1100.669193][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1100.669196][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1100.669198][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1100.669200][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1100.669202][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1100.669206][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1100.669208][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1100.669209][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1100.669211][ C1] PKRU: 55555554 [ 1100.669212][ C1] Call Trace: [ 1100.669217][ C1] [ 1100.669221][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1100.669225][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1100.669231][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1100.669236][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1100.669243][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1100.669247][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1100.669250][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1100.669253][ C1] ? xa_store (lib/xarray.c:1734) [ 1100.669260][ C1] xa_store (lib/xarray.c:1734) [ 1100.669264][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1100.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1100.669277][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1100.669280][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1100.669283][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.669289][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.669293][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1100.669301][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1100.669304][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1100.669310][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1100.669317][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1100.669322][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1100.669332][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1100.669336][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1100.669343][ C1] ksys_unshare (kernel/fork.c:3121) [ 1100.669348][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1100.669351][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1100.669357][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1100.669360][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1100.669363][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1100.669371][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1100.669375][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1100.669381][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1100.669386][ C1] RIP: 0033:0x7f439756d93b [ 1100.669392][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1100.669395][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1100.669398][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1100.669400][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1100.669402][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1100.669404][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1100.669405][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1100.670126][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1100.670132][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1100.670136][ C3] softirqs last disabled at (0): 0x0 | [ 1100.670146][ C3] Tainted: [L]=SOFTLOCKUP [ 1100.670147][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1100.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1100.670156][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1100.670159][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1100.670162][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1100.670164][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1100.670166][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1100.670168][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1100.670170][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1100.670172][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1100.670174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1100.670178][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1100.670180][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1100.670181][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1100.670183][ C3] PKRU: 55555554 [ 1100.670184][ C3] Call Trace: [ 1100.670187][ C3] [ 1100.670188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1100.670194][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1100.670198][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1100.670201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1100.670207][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1100.670213][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1100.670216][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1100.670220][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1100.670223][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1100.670226][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1100.670229][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1100.670231][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1100.670235][ C3] ? xas_alloc (lib/xarray.c:378) [ 1100.670240][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1100.670243][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1100.670246][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1100.670250][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1100.670256][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1100.670260][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1100.670265][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670269][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1100.670275][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1100.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670283][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1100.670286][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1100.670289][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1100.670292][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1100.670295][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1100.670301][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1100.670304][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1100.670307][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1100.670312][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1100.670316][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1100.670319][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1100.670322][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1100.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1100.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1100.670337][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1100.670340][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1100.670346][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1100.670349][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670353][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1100.670358][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1100.670362][ C3] handle_softirqs (kernel/softirq.c:579) [ 1100.670368][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1100.670372][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1100.670375][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1100.670379][ C3] [ 1100.670380][ C3] [ 1100.670382][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1100.670386][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1100.670390][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1100.670393][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1100.670395][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1100.670397][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1100.670399][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1100.670401][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1100.670403][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1100.670407][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1100.670413][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1100.670418][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1100.670423][ C3] ? xas_alloc (lib/xarray.c:378) [ 1100.670427][ C3] ? xas_alloc (lib/xarray.c:378) [ 1100.670430][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1100.670434][ C3] ? xas_alloc (lib/xarray.c:378) [ 1100.670437][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1100.670442][ C3] xas_alloc (lib/xarray.c:378) [ 1100.670447][ C3] xas_create (lib/xarray.c:685) [ 1100.670453][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1100.670458][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1100.670461][ C3] __xa_store (lib/xarray.c:1703) [ 1100.670465][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1100.670470][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1100.670472][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1100.670475][ C3] ? xa_store (lib/xarray.c:1734) [ 1100.670480][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1100.670484][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1100.670487][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1100.670492][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1100.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1100.670498][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670502][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1100.670505][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1100.670510][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1100.670514][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1100.670518][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1100.670522][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1100.670526][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1100.670533][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1100.670536][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1100.670541][ C3] ksys_unshare (kernel/fork.c:3121) [ 1100.670545][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1100.670548][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1100.670552][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1100.670554][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1100.670558][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1100.670563][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1100.670567][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1100.670571][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1100.670574][ C3] RIP: 0033:0x7f439756d93b [ 1100.670578][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1100.670580][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1100.670583][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1100.670585][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1100.670587][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1100.670589][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1100.670591][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1104.656135][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1104.656143][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1104.656147][ C0] softirqs last disabled at (0): 0x0 | [ 1104.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 1104.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1104.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1104.656173][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1104.656176][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1104.656180][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1104.656182][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1104.656184][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1104.656186][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1104.656188][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1104.656190][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1104.656192][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1104.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1104.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1104.656200][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1104.656202][ C0] PKRU: 55555554 [ 1104.656203][ C0] Call Trace: [ 1104.656206][ C0] [ 1104.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1104.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1104.656218][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1104.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1104.656230][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1104.656233][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1104.656236][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1104.656239][ C0] ? xa_store (lib/xarray.c:1734) [ 1104.656246][ C0] xa_store (lib/xarray.c:1734) [ 1104.656250][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1104.656256][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1104.656261][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1104.656264][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1104.656267][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1104.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1104.656278][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1104.656286][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1104.656289][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1104.656294][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1104.656301][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1104.656306][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1104.656314][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1104.656319][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1104.656326][ C0] ksys_unshare (kernel/fork.c:3121) [ 1104.656330][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1104.656334][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1104.656338][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1104.656342][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1104.656345][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1104.656352][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1104.656357][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1104.656362][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1104.656366][ C0] RIP: 0033:0x7f439756d93b [ 1104.656371][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1104.656374][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1104.656377][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1104.656379][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1104.656381][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1104.656383][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1104.656385][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1108.669186][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1108.669211][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1108.669214][ C2] softirqs last disabled at (0): 0x0 | [ 1108.669238][ C2] Tainted: [L]=SOFTLOCKUP [ 1108.669241][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1108.669244][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1108.669260][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1108.669265][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1108.669272][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1108.669274][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1108.669276][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1108.669278][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1108.669280][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1108.669282][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1108.669285][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1108.669289][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1108.669291][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1108.669292][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1108.669294][ C2] PKRU: 55555554 [ 1108.669295][ C2] Call Trace: [ 1108.669306][ C2] [ 1108.669312][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1108.669316][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1108.669327][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1108.669333][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1108.669348][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1108.669354][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1108.669357][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1108.669360][ C2] ? xa_store (lib/xarray.c:1734) [ 1108.669367][ C2] xa_store (lib/xarray.c:1734) [ 1108.669375][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1108.669399][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1108.669405][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1108.669408][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1108.669411][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1108.669418][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1108.669422][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1108.669433][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1108.669437][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1108.669442][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1108.669463][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1108.669468][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1108.669482][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1108.669486][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1108.669499][ C2] ksys_unshare (kernel/fork.c:3121) [ 1108.669506][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1108.669509][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1108.669515][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1108.669518][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1108.669521][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1108.669529][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1108.669533][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1108.669540][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1108.669549][ C2] RIP: 0033:0x7f439756d93b [ 1108.669554][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1108.669557][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1108.669560][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1108.669563][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1108.669565][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1108.669566][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1108.669568][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1126.093216][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1126.093508][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1126.093763][ C1] NMI backtrace for cpu 1 | [ 1126.093781][ C1] Tainted: [L]=SOFTLOCKUP [ 1126.093783][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1126.093785][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1126.093794][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1126.093797][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1126.093801][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1126.093803][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1126.093805][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1126.093808][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1126.093809][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1126.093811][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1126.093816][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1126.093819][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1126.093821][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1126.093823][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1126.093825][ C1] PKRU: 55555554 [ 1126.093826][ C1] Call Trace: [ 1126.093831][ C1] [ 1126.093835][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1126.093839][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1126.093844][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1126.093847][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1126.093856][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1126.093859][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1126.093862][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1126.093865][ C1] ? xa_store (lib/xarray.c:1734) [ 1126.093872][ C1] xa_store (lib/xarray.c:1734) [ 1126.093877][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1126.093883][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1126.093888][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1126.093891][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1126.093894][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.093899][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.093903][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1126.093911][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1126.093915][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1126.093919][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1126.093926][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1126.093931][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1126.093940][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1126.093943][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1126.093950][ C1] ksys_unshare (kernel/fork.c:3121) [ 1126.093957][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1126.093960][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1126.093965][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1126.093969][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1126.093972][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1126.093979][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1126.093983][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1126.093989][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1126.093993][ C1] RIP: 0033:0x7f439756d93b [ 1126.093999][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1126.094001][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1126.094005][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1126.094007][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1126.094009][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1126.094011][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1126.094013][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1126.094011][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1126.094013][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1126.094019][ C1] | [ 1126.094760][ C3] Tainted: [L]=SOFTLOCKUP [ 1126.094762][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1126.094764][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1126.094769][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1126.094774][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1126.094777][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1126.094779][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1126.094781][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1126.094783][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1126.094785][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1126.094787][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1126.094790][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1126.094793][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1126.094795][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1126.094797][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1126.094798][ C3] PKRU: 55555554 [ 1126.094800][ C3] Call Trace: [ 1126.094801][ C3] [ 1126.094802][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1126.094814][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1126.094821][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1126.094826][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1126.094830][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1126.094835][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1126.094838][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1126.094842][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1126.094845][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1126.094850][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1126.094853][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1126.094855][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1126.094858][ C3] ? xas_alloc (lib/xarray.c:378) [ 1126.094863][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1126.094867][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1126.094869][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1126.094873][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1126.094878][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1126.094881][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1126.094886][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.094890][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1126.094895][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1126.094900][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.094903][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1126.094905][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1126.094909][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1126.094912][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1126.094915][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1126.094922][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1126.094924][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1126.094928][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1126.094932][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1126.094936][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1126.094940][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1126.094942][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1126.094950][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.094953][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1126.094958][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1126.094962][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1126.094965][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1126.094970][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1126.094974][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.094977][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1126.094981][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1126.094985][ C3] handle_softirqs (kernel/softirq.c:579) [ 1126.094991][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1126.094995][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1126.094998][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1126.095001][ C3] [ 1126.095002][ C3] [ 1126.095003][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1126.095008][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1126.095011][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1126.095013][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1126.095015][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1126.095017][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1126.095019][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1126.095020][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1126.095022][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1126.095026][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1126.095032][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1126.095037][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1126.095040][ C3] ? xas_alloc (lib/xarray.c:378) [ 1126.095045][ C3] ? xas_alloc (lib/xarray.c:378) [ 1126.095048][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1126.095052][ C3] ? xas_alloc (lib/xarray.c:378) [ 1126.095054][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1126.095059][ C3] xas_alloc (lib/xarray.c:378) [ 1126.095064][ C3] xas_create (lib/xarray.c:685) [ 1126.095070][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1126.095074][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1126.095079][ C3] __xa_store (lib/xarray.c:1703) [ 1126.095082][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1126.095087][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1126.095090][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1126.095093][ C3] ? xa_store (lib/xarray.c:1734) [ 1126.095098][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1126.095101][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1126.095111][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1126.095116][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1126.095119][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1126.095123][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.095127][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1126.095130][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1126.095135][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1126.095139][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1126.095144][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1126.095147][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1126.095153][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1126.095160][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1126.095163][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1126.095168][ C3] ksys_unshare (kernel/fork.c:3121) [ 1126.095173][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1126.095176][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1126.095180][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1126.095182][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1126.095186][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1126.095192][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1126.095195][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1126.095200][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1126.095202][ C3] RIP: 0033:0x7f439756d93b [ 1126.095209][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1126.095212][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1126.095215][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1126.095216][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1126.095218][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1126.095220][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1126.095221][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1132.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1132.656149][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1132.656152][ C0] softirqs last disabled at (0): 0x0 | [ 1132.656166][ C0] Tainted: [L]=SOFTLOCKUP [ 1132.656168][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1132.656170][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1132.656179][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1132.656182][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1132.656186][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1132.656188][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1132.656190][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1132.656192][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1132.656194][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1132.656196][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1132.656198][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1132.656203][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1132.656205][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1132.656206][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1132.656208][ C0] PKRU: 55555554 [ 1132.656209][ C0] Call Trace: [ 1132.656213][ C0] [ 1132.656217][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1132.656221][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1132.656226][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1132.656231][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1132.656239][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1132.656243][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1132.656246][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1132.656249][ C0] ? xa_store (lib/xarray.c:1734) [ 1132.656256][ C0] xa_store (lib/xarray.c:1734) [ 1132.656261][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1132.656268][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1132.656273][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1132.656276][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1132.656279][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1132.656285][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1132.656289][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1132.656297][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1132.656308][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1132.656313][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1132.656321][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1132.656326][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1132.656335][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1132.656339][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1132.656346][ C0] ksys_unshare (kernel/fork.c:3121) [ 1132.656352][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1132.656355][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1132.656360][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1132.656363][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1132.656366][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1132.656373][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1132.656377][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1132.656383][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1132.656388][ C0] RIP: 0033:0x7f439756d93b [ 1132.656396][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1132.656399][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1132.656402][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1132.656404][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1132.656406][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1132.656408][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1132.656410][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1136.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1136.669151][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1136.669155][ C2] softirqs last disabled at (0): 0x0 | [ 1136.669170][ C2] Tainted: [L]=SOFTLOCKUP [ 1136.669172][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1136.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1136.669184][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1136.669188][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1136.669191][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1136.669193][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1136.669195][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1136.669197][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1136.669200][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1136.669202][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1136.669204][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1136.669208][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1136.669210][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1136.669211][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1136.669213][ C2] PKRU: 55555554 [ 1136.669214][ C2] Call Trace: [ 1136.669219][ C2] [ 1136.669223][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1136.669227][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1136.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1136.669237][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1136.669245][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1136.669248][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1136.669251][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1136.669254][ C2] ? xa_store (lib/xarray.c:1734) [ 1136.669262][ C2] xa_store (lib/xarray.c:1734) [ 1136.669266][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1136.669273][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1136.669278][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1136.669281][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1136.669284][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1136.669298][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1136.669302][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1136.669309][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1136.669313][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1136.669319][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1136.669326][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1136.669332][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1136.669341][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1136.669345][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1136.669352][ C2] ksys_unshare (kernel/fork.c:3121) [ 1136.669357][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1136.669361][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1136.669366][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1136.669369][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1136.669372][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1136.669381][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1136.669385][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1136.669391][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1136.669396][ C2] RIP: 0033:0x7f439756d93b [ 1136.669402][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1136.669405][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1136.669408][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1136.669410][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1136.669412][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1136.669414][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1136.669416][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1152.669143][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1152.669153][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1152.669157][ C1] softirqs last disabled at (0): 0x0 | [ 1152.669171][ C1] Tainted: [L]=SOFTLOCKUP [ 1152.669172][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1152.669175][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1152.669187][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1152.669190][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1152.669193][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1152.669195][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1152.669198][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1152.669200][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1152.669202][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1152.669204][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1152.669207][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1152.669210][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1152.669212][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1152.669214][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1152.669216][ C1] PKRU: 55555554 [ 1152.669217][ C1] Call Trace: [ 1152.669222][ C1] [ 1152.669226][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1152.669230][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1152.669236][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1152.669240][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1152.669248][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1152.669252][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1152.669255][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1152.669258][ C1] ? xa_store (lib/xarray.c:1734) [ 1152.669265][ C1] xa_store (lib/xarray.c:1734) [ 1152.669270][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1152.669276][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1152.669281][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1152.669289][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1152.669292][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.669300][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.669303][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1152.669311][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1152.669315][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1152.669320][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1152.669328][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1152.669333][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1152.669342][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1152.669347][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1152.669354][ C1] ksys_unshare (kernel/fork.c:3121) [ 1152.669359][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1152.669363][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1152.669368][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1152.669372][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1152.669375][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1152.669382][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1152.669386][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1152.669392][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1152.669398][ C1] RIP: 0033:0x7f439756d93b [ 1152.669403][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1152.669406][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1152.669409][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1152.669411][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1152.669413][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1152.669415][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1152.669417][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1152.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1152.670132][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1152.670136][ C3] softirqs last disabled at (0): 0x0 | [ 1152.670146][ C3] Tainted: [L]=SOFTLOCKUP [ 1152.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1152.670149][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 1152.670154][ C3] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 1152.670157][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000246 [ 1152.670160][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1152.670162][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1152.670164][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1152.670166][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1152.670168][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1152.670170][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1152.670173][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1152.670176][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1152.670178][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1152.670179][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1152.670181][ C3] PKRU: 55555554 [ 1152.670182][ C3] Call Trace: [ 1152.670185][ C3] [ 1152.670186][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1152.670192][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1152.670197][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1152.670202][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1152.670205][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1152.670209][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1152.670214][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1152.670217][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1152.670221][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1152.670228][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1152.670232][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1152.670234][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1152.670237][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1152.670240][ C3] ? xas_alloc (lib/xarray.c:378) [ 1152.670245][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1152.670249][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1152.670252][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1152.670255][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1152.670261][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1152.670264][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1152.670270][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670274][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1152.670279][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1152.670285][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670287][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1152.670291][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1152.670295][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1152.670298][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1152.670301][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1152.670306][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1152.670309][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1152.670312][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1152.670317][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1152.670321][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1152.670325][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1152.670328][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1152.670332][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670335][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1152.670340][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1152.670344][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1152.670347][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1152.670352][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1152.670356][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670359][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1152.670364][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1152.670368][ C3] handle_softirqs (kernel/softirq.c:579) [ 1152.670374][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1152.670378][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1152.670381][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1152.670384][ C3] [ 1152.670385][ C3] [ 1152.670386][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1152.670390][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1152.670394][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1152.670397][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1152.670400][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1152.670402][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1152.670404][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1152.670406][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1152.670408][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1152.670412][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1152.670417][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1152.670423][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1152.670427][ C3] ? xas_alloc (lib/xarray.c:378) [ 1152.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 1152.670434][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1152.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 1152.670441][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1152.670446][ C3] xas_alloc (lib/xarray.c:378) [ 1152.670450][ C3] xas_create (lib/xarray.c:685) [ 1152.670456][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1152.670461][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1152.670465][ C3] __xa_store (lib/xarray.c:1703) [ 1152.670469][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1152.670473][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1152.670476][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1152.670479][ C3] ? xa_store (lib/xarray.c:1734) [ 1152.670484][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1152.670488][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1152.670491][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1152.670495][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1152.670498][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1152.670501][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670505][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1152.670508][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1152.670513][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1152.670517][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1152.670522][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1152.670525][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1152.670530][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1152.670537][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1152.670540][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1152.670545][ C3] ksys_unshare (kernel/fork.c:3121) [ 1152.670549][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1152.670552][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1152.670556][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1152.670559][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1152.670562][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1152.670568][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1152.670571][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1152.670576][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1152.670579][ C3] RIP: 0033:0x7f439756d93b [ 1152.670583][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1152.670585][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1152.670588][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1152.670590][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1152.670592][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1152.670593][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1152.670595][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1160.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1160.656154][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1160.656158][ C0] softirqs last disabled at (0): 0x0 | [ 1160.656171][ C0] Tainted: [L]=SOFTLOCKUP [ 1160.656173][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1160.656174][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1160.656183][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1160.656186][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1160.656189][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1160.656191][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1160.656193][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1160.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1160.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1160.656199][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1160.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1160.656206][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1160.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1160.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1160.656211][ C0] PKRU: 55555554 [ 1160.656212][ C0] Call Trace: [ 1160.656216][ C0] [ 1160.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1160.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1160.656229][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1160.656234][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1160.656242][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1160.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1160.656249][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1160.656251][ C0] ? xa_store (lib/xarray.c:1734) [ 1160.656258][ C0] xa_store (lib/xarray.c:1734) [ 1160.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1160.656269][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1160.656274][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1160.656277][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1160.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1160.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1160.656290][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1160.656298][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1160.656302][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1160.656308][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1160.656315][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1160.656320][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1160.656329][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1160.656333][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1160.656340][ C0] ksys_unshare (kernel/fork.c:3121) [ 1160.656345][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1160.656349][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1160.656355][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1160.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1160.656362][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1160.656370][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1160.656374][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1160.656379][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1160.656384][ C0] RIP: 0033:0x7f439756d93b [ 1160.656389][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1160.656392][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1160.656395][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1160.656397][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1160.656398][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1160.656400][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1160.656402][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1164.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1164.669152][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1164.669156][ C2] softirqs last disabled at (0): 0x0 | [ 1164.669170][ C2] Tainted: [L]=SOFTLOCKUP [ 1164.669172][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1164.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1164.669184][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1164.669188][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1164.669191][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1164.669194][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1164.669196][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1164.669198][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1164.669200][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1164.669202][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1164.669205][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1164.669209][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1164.669211][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1164.669212][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1164.669214][ C2] PKRU: 55555554 [ 1164.669215][ C2] Call Trace: [ 1164.669219][ C2] [ 1164.669223][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1164.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1164.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1164.669238][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1164.669246][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1164.669250][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1164.669261][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1164.669265][ C2] ? xa_store (lib/xarray.c:1734) [ 1164.669272][ C2] xa_store (lib/xarray.c:1734) [ 1164.669278][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1164.669286][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1164.669291][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1164.669294][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1164.669297][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1164.669304][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1164.669308][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1164.669316][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1164.669320][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1164.669325][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1164.669333][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1164.669340][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1164.669349][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1164.669353][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1164.669361][ C2] ksys_unshare (kernel/fork.c:3121) [ 1164.669366][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1164.669371][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1164.669377][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1164.669380][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1164.669384][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1164.669391][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1164.669395][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1164.669400][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1164.669407][ C2] RIP: 0033:0x7f439756d93b [ 1164.669413][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1164.669415][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1164.669419][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1164.669421][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1164.669423][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1164.669424][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1164.669426][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1180.669179][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1180.669200][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1180.669204][ C1] softirqs last disabled at (0): 0x0 | [ 1180.669227][ C1] Tainted: [L]=SOFTLOCKUP [ 1180.669229][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1180.669234][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1180.669264][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1180.669268][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1180.669274][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1180.669276][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1180.669279][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1180.669282][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1180.669284][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1180.669286][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1180.669289][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1180.669293][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1180.669295][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1180.669297][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1180.669298][ C1] PKRU: 55555554 [ 1180.669299][ C1] Call Trace: [ 1180.669311][ C1] [ 1180.669316][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1180.669321][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1180.669329][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1180.669337][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1180.669350][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1180.669354][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1180.669357][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1180.669360][ C1] ? xa_store (lib/xarray.c:1734) [ 1180.669372][ C1] xa_store (lib/xarray.c:1734) [ 1180.669378][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1180.669389][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1180.669394][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1180.669397][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1180.669400][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.669413][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.669417][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1180.669429][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1180.669434][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1180.669445][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1180.669458][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1180.669464][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1180.669480][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1180.669485][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1180.669497][ C1] ksys_unshare (kernel/fork.c:3121) [ 1180.669503][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1180.669507][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1180.669515][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1180.669520][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1180.669525][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1180.669535][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1180.669538][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1180.669550][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1180.669562][ C1] RIP: 0033:0x7f439756d93b [ 1180.669571][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1180.669575][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1180.669579][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1180.669581][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1180.669583][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1180.669586][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1180.669588][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1180.670130][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1180.670136][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1180.670141][ C3] softirqs last disabled at (0): 0x0 | [ 1180.670156][ C3] Tainted: [L]=SOFTLOCKUP [ 1180.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1180.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1180.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1180.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1180.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1180.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1180.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1180.670184][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1180.670187][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1180.670191][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1180.670193][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1180.670198][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1180.670200][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1180.670201][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1180.670203][ C3] PKRU: 55555554 [ 1180.670204][ C3] Call Trace: [ 1180.670206][ C3] [ 1180.670209][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1180.670218][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1180.670225][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1180.670229][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1180.670235][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1180.670244][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1180.670248][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1180.670252][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1180.670256][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1180.670261][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1180.670264][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1180.670271][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1180.670275][ C3] ? xas_alloc (lib/xarray.c:378) [ 1180.670280][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1180.670284][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1180.670290][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1180.670294][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1180.670299][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1180.670305][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1180.670311][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670317][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1180.670325][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1180.670332][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670335][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1180.670339][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1180.670343][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1180.670347][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1180.670350][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1180.670362][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1180.670365][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1180.670369][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1180.670373][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1180.670380][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1180.670384][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1180.670387][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1180.670391][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670395][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1180.670399][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1180.670405][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1180.670408][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1180.670414][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1180.670419][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670423][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1180.670428][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1180.670434][ C3] handle_softirqs (kernel/softirq.c:579) [ 1180.670441][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1180.670446][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1180.670450][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1180.670454][ C3] [ 1180.670455][ C3] [ 1180.670456][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1180.670462][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1180.670465][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1180.670469][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1180.670473][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1180.670475][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1180.670478][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1180.670480][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1180.670487][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1180.670493][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1180.670499][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1180.670505][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1180.670513][ C3] ? xas_alloc (lib/xarray.c:378) [ 1180.670518][ C3] ? xas_alloc (lib/xarray.c:378) [ 1180.670521][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1180.670525][ C3] ? xas_alloc (lib/xarray.c:378) [ 1180.670528][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1180.670533][ C3] xas_alloc (lib/xarray.c:378) [ 1180.670538][ C3] xas_create (lib/xarray.c:685) [ 1180.670544][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1180.670551][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1180.670554][ C3] __xa_store (lib/xarray.c:1703) [ 1180.670559][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1180.670563][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1180.670566][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1180.670570][ C3] ? xa_store (lib/xarray.c:1734) [ 1180.670575][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1180.670579][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1180.670583][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1180.670589][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1180.670592][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1180.670596][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670601][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1180.670605][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1180.670610][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1180.670614][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1180.670619][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1180.670622][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1180.670628][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1180.670635][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1180.670638][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1180.670643][ C3] ksys_unshare (kernel/fork.c:3121) [ 1180.670647][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1180.670651][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1180.670654][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1180.670657][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1180.670661][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1180.670667][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1180.670671][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1180.670675][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1180.670679][ C3] RIP: 0033:0x7f439756d93b [ 1180.670687][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1180.670691][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1180.670694][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1180.670699][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1180.670701][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1180.670704][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1180.670706][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1188.656176][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1188.656189][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1188.656196][ C0] softirqs last disabled at (0): 0x0 | [ 1188.656217][ C0] Tainted: [L]=SOFTLOCKUP [ 1188.656219][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1188.656223][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1188.656239][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1188.656245][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1188.656250][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1188.656254][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1188.656257][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1188.656260][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1188.656264][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1188.656267][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1188.656271][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1188.656278][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1188.656281][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1188.656285][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1188.656288][ C0] PKRU: 55555554 [ 1188.656290][ C0] Call Trace: [ 1188.656298][ C0] [ 1188.656306][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1188.656313][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1188.656323][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1188.656330][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1188.656345][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1188.656352][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1188.656357][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1188.656362][ C0] ? xa_store (lib/xarray.c:1734) [ 1188.656375][ C0] xa_store (lib/xarray.c:1734) [ 1188.656382][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1188.656393][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1188.656403][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1188.656408][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1188.656412][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1188.656424][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1188.656429][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1188.656442][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1188.656449][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1188.656457][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1188.656472][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1188.656481][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1188.656496][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1188.656503][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1188.656515][ C0] ksys_unshare (kernel/fork.c:3121) [ 1188.656522][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1188.656527][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1188.656535][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1188.656540][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1188.656545][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1188.656556][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1188.656578][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1188.656588][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1188.656596][ C0] RIP: 0033:0x7f439756d93b [ 1188.656604][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1188.656608][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1188.656613][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1188.656617][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1188.656620][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1188.656623][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1188.656626][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1192.669165][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1192.669180][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1192.669185][ C2] softirqs last disabled at (0): 0x0 | [ 1192.669205][ C2] Tainted: [L]=SOFTLOCKUP [ 1192.669207][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1192.669211][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:86 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 1192.669221][ C2] Code: d0 74 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea 09 48 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 All code ======== 0: d0 74 11 80 shlb $1,-0x80(%rcx,%rdx,1) 4: 38 00 cmp %al,(%rax) 6: 74 ef je 0xfffffffffffffff7 8: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 c: 48 89 c2 mov %rax,%rdx f: 48 85 c0 test %rax,%rax 12: 75 b0 jne 0xffffffffffffffc4 14: 48 89 da mov %rbx,%rdx 17: 4c 89 d8 mov %r11,%rax 1a: 4c 29 da sub %r11,%rdx 1d: e9 49 ff ff ff jmp 0xffffffffffffff6b 22: 48 85 d2 test %rdx,%rdx 25: 74 b3 je 0xffffffffffffffda 27: 48 01 ea add %rbp,%rdx 2a:* eb 09 jmp 0x35 <-- trapping instruction 2c: 48 83 c0 01 add $0x1,%rax 30: 48 39 d0 cmp %rdx,%rax 33: 74 a5 je 0xffffffffffffffda 35: 80 38 00 cmpb $0x0,(%rax) 38: 74 f2 je 0x2c 3a: e9 74 ff ff ff jmp 0xffffffffffffffb3 3f: b8 .byte 0xb8 Code starting with the faulting instruction =========================================== 0: eb 09 jmp 0xb 2: 48 83 c0 01 add $0x1,%rax 6: 48 39 d0 cmp %rdx,%rax 9: 74 a5 je 0xffffffffffffffb0 b: 80 38 00 cmpb $0x0,(%rax) e: 74 f2 je 0x2 10: e9 74 ff ff ff jmp 0xffffffffffffff89 15: b8 .byte 0xb8 [ 1192.669225][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000286 [ 1192.669229][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 1192.669232][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1192.669234][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1192.669236][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1192.669239][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1192.669242][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1192.669245][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1192.669249][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1192.669251][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1192.669253][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1192.669255][ C2] PKRU: 55555554 [ 1192.669256][ C2] Call Trace: [ 1192.669266][ C2] [ 1192.669272][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1192.669290][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1192.669293][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1192.669300][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1192.669307][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1192.669317][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1192.669322][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1192.669326][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1192.669329][ C2] ? xa_store (lib/xarray.c:1734) [ 1192.669338][ C2] xa_store (lib/xarray.c:1734) [ 1192.669344][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1192.669353][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1192.669359][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1192.669362][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1192.669366][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1192.669376][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1192.669392][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1192.669403][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1192.669406][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1192.669412][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1192.669425][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1192.669430][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1192.669445][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1192.669450][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1192.669459][ C2] ksys_unshare (kernel/fork.c:3121) [ 1192.669465][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1192.669469][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1192.669480][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1192.669483][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1192.669487][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1192.669496][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1192.669503][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1192.669512][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1192.669519][ C2] RIP: 0033:0x7f439756d93b [ 1192.669527][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1192.669531][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1192.669535][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1192.669537][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1192.669540][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1192.669542][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1192.669544][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1204.108030][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1204.108329][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1204.108613][ C1] NMI backtrace for cpu 1 | [ 1204.108637][ C1] Tainted: [L]=SOFTLOCKUP [ 1204.108639][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1204.108643][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1204.108655][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1204.108660][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1204.108664][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1204.108667][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1204.108669][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1204.108672][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1204.108680][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1204.108683][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1204.108686][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1204.108690][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1204.108693][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1204.108694][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1204.108697][ C1] PKRU: 55555554 [ 1204.108698][ C1] Call Trace: [ 1204.108702][ C1] [ 1204.108707][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1204.108712][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1204.108717][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1204.108721][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1204.108732][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1204.108736][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1204.108740][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1204.108743][ C1] ? xa_store (lib/xarray.c:1734) [ 1204.108753][ C1] xa_store (lib/xarray.c:1734) [ 1204.108757][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1204.108767][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1204.108773][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1204.108776][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1204.108779][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.108785][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.108788][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1204.108798][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1204.108802][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1204.108808][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1204.108818][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1204.108823][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1204.108832][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1204.108836][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1204.108846][ C1] ksys_unshare (kernel/fork.c:3121) [ 1204.108856][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1204.108859][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1204.108866][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1204.108871][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1204.108875][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1204.108886][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1204.108890][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1204.108897][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1204.108904][ C1] RIP: 0033:0x7f439756d93b [ 1204.108912][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1204.108916][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1204.108919][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1204.108922][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1204.108924][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1204.108926][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1204.108928][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1204.108926][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1204.108928][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1204.108935][ C1] | [ 1204.109614][ C3] Tainted: [L]=SOFTLOCKUP [ 1204.109616][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1204.109618][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1204.109625][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1204.109629][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1204.109632][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1204.109635][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1204.109638][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1204.109641][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1204.109644][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1204.109646][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1204.109649][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1204.109654][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1204.109656][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1204.109658][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1204.109665][ C3] PKRU: 55555554 [ 1204.109666][ C3] Call Trace: [ 1204.109668][ C3] [ 1204.109669][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1204.109680][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1204.109687][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1204.109691][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1204.109697][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1204.109707][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1204.109711][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1204.109716][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1204.109720][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1204.109725][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1204.109728][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1204.109731][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1204.109734][ C3] ? xas_alloc (lib/xarray.c:378) [ 1204.109739][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1204.109743][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1204.109746][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1204.109749][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1204.109756][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1204.109760][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1204.109766][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.109771][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1204.109777][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1204.109782][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.109786][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1204.109788][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1204.109792][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1204.109796][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1204.109798][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1204.109810][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1204.109813][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1204.109816][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1204.109821][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1204.109825][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1204.109829][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1204.109831][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1204.109839][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.109845][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1204.109850][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1204.109854][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1204.109857][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1204.109862][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1204.109866][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.109870][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1204.109875][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1204.109880][ C3] handle_softirqs (kernel/softirq.c:579) [ 1204.109885][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1204.109890][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1204.109894][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1204.109898][ C3] [ 1204.109900][ C3] [ 1204.109901][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1204.109906][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1204.109913][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1204.109916][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1204.109919][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1204.109921][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1204.109923][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1204.109925][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1204.109927][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1204.109931][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1204.109937][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1204.109942][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1204.109946][ C3] ? xas_alloc (lib/xarray.c:378) [ 1204.109951][ C3] ? xas_alloc (lib/xarray.c:378) [ 1204.109953][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1204.109958][ C3] ? xas_alloc (lib/xarray.c:378) [ 1204.109961][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1204.109966][ C3] xas_alloc (lib/xarray.c:378) [ 1204.109971][ C3] xas_create (lib/xarray.c:685) [ 1204.109978][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1204.109983][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1204.109987][ C3] __xa_store (lib/xarray.c:1703) [ 1204.109992][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1204.109996][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1204.109999][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1204.110002][ C3] ? xa_store (lib/xarray.c:1734) [ 1204.110007][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1204.110011][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1204.110014][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1204.110019][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1204.110021][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1204.110024][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.110028][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1204.110031][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1204.110038][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1204.110041][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1204.110046][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1204.110051][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1204.110055][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1204.110062][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1204.110065][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1204.110071][ C3] ksys_unshare (kernel/fork.c:3121) [ 1204.110077][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1204.110080][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1204.110084][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1204.110087][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1204.110090][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1204.110096][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1204.110100][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1204.110105][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1204.110108][ C3] RIP: 0033:0x7f439756d93b [ 1204.110114][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1204.110117][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1204.110120][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1204.110122][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1204.110124][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1204.110126][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1204.110128][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1216.656150][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1216.656160][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1216.656164][ C0] softirqs last disabled at (0): 0x0 | [ 1216.656179][ C0] Tainted: [L]=SOFTLOCKUP [ 1216.656181][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1216.656184][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1216.656195][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1216.656199][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1216.656203][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1216.656205][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1216.656207][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1216.656209][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1216.656211][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1216.656213][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1216.656216][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1216.656219][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1216.656221][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1216.656223][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1216.656225][ C0] PKRU: 55555554 [ 1216.656226][ C0] Call Trace: [ 1216.656231][ C0] [ 1216.656236][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1216.656240][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1216.656246][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1216.656251][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1216.656259][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1216.656264][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1216.656267][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1216.656269][ C0] ? xa_store (lib/xarray.c:1734) [ 1216.656277][ C0] xa_store (lib/xarray.c:1734) [ 1216.656282][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1216.656288][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1216.656294][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1216.656296][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1216.656307][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1216.656314][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1216.656318][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1216.656326][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1216.656330][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1216.656335][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1216.656343][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1216.656348][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1216.656361][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1216.656365][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1216.656373][ C0] ksys_unshare (kernel/fork.c:3121) [ 1216.656378][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1216.656381][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1216.656387][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1216.656391][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1216.656395][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1216.656402][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1216.656406][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1216.656413][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1216.656418][ C0] RIP: 0033:0x7f439756d93b [ 1216.656424][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1216.656427][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1216.656431][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1216.656433][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1216.656435][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1216.656436][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1216.656438][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1220.669139][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1220.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1220.669152][ C2] softirqs last disabled at (0): 0x0 | [ 1220.669167][ C2] Tainted: [L]=SOFTLOCKUP [ 1220.669168][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1220.669171][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 1220.669178][ C2] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 1220.669182][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 1220.669186][ C2] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1220.669188][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1220.669190][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1220.669192][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1220.669194][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1220.669197][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1220.669199][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1220.669203][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1220.669205][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1220.669214][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1220.669215][ C2] PKRU: 55555554 [ 1220.669217][ C2] Call Trace: [ 1220.669220][ C2] [ 1220.669224][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1220.669237][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1220.669241][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1220.669246][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1220.669252][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1220.669261][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1220.669265][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1220.669268][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1220.669271][ C2] ? xa_store (lib/xarray.c:1734) [ 1220.669278][ C2] xa_store (lib/xarray.c:1734) [ 1220.669282][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1220.669291][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1220.669296][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1220.669300][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1220.669302][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1220.669310][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1220.669313][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1220.669321][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1220.669325][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1220.669331][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1220.669339][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1220.669344][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1220.669353][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1220.669358][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1220.669364][ C2] ksys_unshare (kernel/fork.c:3121) [ 1220.669369][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1220.669373][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1220.669378][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1220.669381][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1220.669384][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1220.669391][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1220.669396][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1220.669401][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1220.669407][ C2] RIP: 0033:0x7f439756d93b [ 1220.669413][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1220.669415][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1220.669419][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1220.669421][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1220.669423][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1220.669425][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1220.669427][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1228.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1228.669157][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1228.669161][ C1] softirqs last disabled at (0): 0x0 | [ 1228.669176][ C1] Tainted: [L]=SOFTLOCKUP [ 1228.669177][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1228.669180][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1228.669188][ C1] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1228.669191][ C1] RSP: 0018:ffffc900034b7a00 EFLAGS: 00000282 [ 1228.669195][ C1] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1228.669197][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1228.669199][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1228.669201][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1228.669204][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1228.669206][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1228.669208][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1228.669212][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1228.669214][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1228.669215][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1228.669217][ C1] PKRU: 55555554 [ 1228.669218][ C1] Call Trace: [ 1228.669222][ C1] [ 1228.669226][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1228.669238][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1228.669241][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1228.669247][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1228.669251][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1228.669259][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1228.669263][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1228.669268][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1228.669271][ C1] ? xa_store (lib/xarray.c:1734) [ 1228.669279][ C1] xa_store (lib/xarray.c:1734) [ 1228.669284][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1228.669291][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1228.669296][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1228.669299][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1228.669302][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.669309][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.669313][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1228.669320][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1228.669324][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1228.669329][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1228.669337][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1228.669342][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1228.669351][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1228.669355][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1228.669361][ C1] ksys_unshare (kernel/fork.c:3121) [ 1228.669367][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1228.669372][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1228.669377][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1228.669380][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1228.669384][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1228.669391][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1228.669395][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1228.669402][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1228.669407][ C1] RIP: 0033:0x7f439756d93b [ 1228.669412][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1228.669415][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1228.669418][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1228.669420][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1228.669422][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1228.669424][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1228.669426][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1228.670140][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1228.670149][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1228.670152][ C3] softirqs last disabled at (0): 0x0 | [ 1228.670166][ C3] Tainted: [L]=SOFTLOCKUP [ 1228.670168][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1228.670170][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1228.670179][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1228.670183][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1228.670186][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1228.670188][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1228.670190][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1228.670192][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1228.670194][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1228.670196][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1228.670198][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1228.670202][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1228.670204][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1228.670205][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1228.670207][ C3] PKRU: 55555554 [ 1228.670208][ C3] Call Trace: [ 1228.670213][ C3] [ 1228.670214][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1228.670223][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1228.670229][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1228.670232][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1228.670249][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1228.670255][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1228.670259][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1228.670263][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1228.670267][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1228.670271][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1228.670273][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1228.670276][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1228.670279][ C3] ? xas_alloc (lib/xarray.c:378) [ 1228.670285][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1228.670290][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1228.670293][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1228.670299][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1228.670304][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1228.670309][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1228.670314][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670320][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1228.670327][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1228.670335][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670338][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1228.670341][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1228.670344][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1228.670347][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1228.670350][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1228.670359][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1228.670362][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1228.670365][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1228.670371][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1228.670378][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1228.670381][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1228.670384][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1228.670389][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670392][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1228.670397][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1228.670402][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1228.670404][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1228.670410][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1228.670414][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670417][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1228.670422][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1228.670426][ C3] handle_softirqs (kernel/softirq.c:579) [ 1228.670432][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1228.670436][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1228.670439][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1228.670444][ C3] [ 1228.670445][ C3] [ 1228.670447][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1228.670457][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1228.670462][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1228.670466][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1228.670471][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1228.670474][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1228.670477][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1228.670480][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1228.670482][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1228.670486][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1228.670492][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1228.670498][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1228.670502][ C3] ? xas_alloc (lib/xarray.c:378) [ 1228.670507][ C3] ? xas_alloc (lib/xarray.c:378) [ 1228.670510][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1228.670514][ C3] ? xas_alloc (lib/xarray.c:378) [ 1228.670517][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1228.670522][ C3] xas_alloc (lib/xarray.c:378) [ 1228.670526][ C3] xas_create (lib/xarray.c:685) [ 1228.670533][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1228.670537][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1228.670541][ C3] __xa_store (lib/xarray.c:1703) [ 1228.670545][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1228.670549][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1228.670552][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1228.670555][ C3] ? xa_store (lib/xarray.c:1734) [ 1228.670560][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1228.670564][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1228.670568][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1228.670573][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1228.670576][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1228.670578][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670582][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1228.670585][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1228.670590][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1228.670594][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1228.670599][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1228.670603][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1228.670608][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1228.670620][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1228.670624][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1228.670630][ C3] ksys_unshare (kernel/fork.c:3121) [ 1228.670635][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1228.670638][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1228.670642][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1228.670644][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1228.670647][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1228.670656][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1228.670660][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1228.670665][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1228.670669][ C3] RIP: 0033:0x7f439756d93b [ 1228.670674][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1228.670677][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1228.670680][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1228.670682][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1228.670684][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1228.670685][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1228.670687][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1244.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1244.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1244.656148][ C0] softirqs last disabled at (0): 0x0 | [ 1244.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 1244.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1244.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1244.656173][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1244.656176][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1244.656179][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1244.656181][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1244.656183][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1244.656185][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1244.656187][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1244.656189][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1244.656191][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1244.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1244.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1244.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1244.656201][ C0] PKRU: 55555554 [ 1244.656202][ C0] Call Trace: [ 1244.656206][ C0] [ 1244.656210][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1244.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1244.656220][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1244.656224][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1244.656232][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1244.656236][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1244.656239][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1244.656242][ C0] ? xa_store (lib/xarray.c:1734) [ 1244.656249][ C0] xa_store (lib/xarray.c:1734) [ 1244.656254][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1244.656260][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1244.656265][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1244.656268][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1244.656271][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1244.656277][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1244.656281][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1244.656288][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1244.656292][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1244.656304][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1244.656311][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1244.656316][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1244.656325][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1244.656329][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1244.656336][ C0] ksys_unshare (kernel/fork.c:3121) [ 1244.656342][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1244.656345][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1244.656349][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1244.656352][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1244.656356][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1244.656363][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1244.656366][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1244.656372][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1244.656377][ C0] RIP: 0033:0x7f439756d93b [ 1244.656382][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1244.656385][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1244.656388][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1244.656390][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1244.656391][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1244.656393][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1244.656395][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1248.669143][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1248.669154][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1248.669158][ C2] softirqs last disabled at (0): 0x0 | [ 1248.669171][ C2] Tainted: [L]=SOFTLOCKUP [ 1248.669173][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1248.669176][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1248.669186][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1248.669190][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1248.669193][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1248.669196][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1248.669198][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1248.669200][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1248.669202][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1248.669204][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1248.669207][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1248.669217][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1248.669219][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1248.669221][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1248.669224][ C2] PKRU: 55555554 [ 1248.669225][ C2] Call Trace: [ 1248.669229][ C2] [ 1248.669234][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1248.669238][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1248.669244][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1248.669249][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1248.669257][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1248.669261][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1248.669265][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1248.669268][ C2] ? xa_store (lib/xarray.c:1734) [ 1248.669275][ C2] xa_store (lib/xarray.c:1734) [ 1248.669280][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1248.669287][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1248.669292][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1248.669295][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1248.669298][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1248.669306][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1248.669310][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1248.669318][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1248.669322][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1248.669327][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1248.669335][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1248.669340][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1248.669349][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1248.669353][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1248.669361][ C2] ksys_unshare (kernel/fork.c:3121) [ 1248.669366][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1248.669369][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1248.669375][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1248.669378][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1248.669382][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1248.669390][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1248.669394][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1248.669399][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1248.669406][ C2] RIP: 0033:0x7f439756d93b [ 1248.669411][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1248.669414][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1248.669418][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1248.669420][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1248.669422][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1248.669424][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1248.669426][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1256.669141][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1256.669152][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1256.669156][ C1] softirqs last disabled at (0): 0x0 | [ 1256.669169][ C1] Tainted: [L]=SOFTLOCKUP [ 1256.669171][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1256.669174][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1256.669185][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1256.669188][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1256.669191][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1256.669194][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1256.669196][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1256.669198][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1256.669200][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1256.669202][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1256.669204][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1256.669209][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1256.669210][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1256.669212][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1256.669214][ C1] PKRU: 55555554 [ 1256.669215][ C1] Call Trace: [ 1256.669220][ C1] [ 1256.669224][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1256.669228][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1256.669234][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1256.669238][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1256.669246][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1256.669250][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1256.669253][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1256.669256][ C1] ? xa_store (lib/xarray.c:1734) [ 1256.669263][ C1] xa_store (lib/xarray.c:1734) [ 1256.669268][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1256.669275][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1256.669280][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1256.669283][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1256.669286][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.669293][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.669303][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1256.669312][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1256.669316][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1256.669321][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1256.669329][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1256.669334][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1256.669344][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1256.669348][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1256.669355][ C1] ksys_unshare (kernel/fork.c:3121) [ 1256.669360][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1256.669364][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1256.669369][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1256.669372][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1256.669376][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1256.669383][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1256.669388][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1256.669393][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1256.669399][ C1] RIP: 0033:0x7f439756d93b [ 1256.669405][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1256.669408][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1256.669411][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1256.669413][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1256.669415][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1256.669417][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1256.669419][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1256.670141][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1256.670151][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1256.670155][ C3] softirqs last disabled at (0): 0x0 | [ 1256.670168][ C3] Tainted: [L]=SOFTLOCKUP [ 1256.670170][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1256.670172][ C3] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 1256.670179][ C3] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 1256.670183][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000212 [ 1256.670186][ C3] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1256.670189][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1256.670190][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1256.670193][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1256.670195][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1256.670197][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1256.670199][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1256.670204][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1256.670206][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1256.670208][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1256.670210][ C3] PKRU: 55555554 [ 1256.670212][ C3] Call Trace: [ 1256.670216][ C3] [ 1256.670220][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1256.670229][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1256.670233][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1256.670237][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1256.670241][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1256.670246][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1256.670251][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1256.670255][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1256.670259][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1256.670262][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1256.670266][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1256.670269][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1256.670271][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1256.670274][ C3] ? xas_alloc (lib/xarray.c:378) [ 1256.670280][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1256.670285][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1256.670288][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1256.670292][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1256.670298][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1256.670302][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1256.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670314][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1256.670322][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1256.670329][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670332][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1256.670335][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1256.670339][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1256.670343][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1256.670345][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1256.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1256.670356][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1256.670359][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1256.670363][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1256.670369][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1256.670372][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1256.670382][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1256.670386][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670389][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1256.670394][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1256.670398][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1256.670401][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1256.670407][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1256.670412][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670415][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1256.670420][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1256.670425][ C3] handle_softirqs (kernel/softirq.c:579) [ 1256.670431][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1256.670435][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1256.670438][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1256.670442][ C3] [ 1256.670443][ C3] [ 1256.670445][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1256.670451][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1256.670455][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1256.670458][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1256.670461][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1256.670463][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1256.670465][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1256.670467][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1256.670469][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1256.670473][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1256.670479][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1256.670484][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1256.670488][ C3] ? xas_alloc (lib/xarray.c:378) [ 1256.670492][ C3] ? xas_alloc (lib/xarray.c:378) [ 1256.670495][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1256.670500][ C3] ? xas_alloc (lib/xarray.c:378) [ 1256.670502][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1256.670507][ C3] xas_alloc (lib/xarray.c:378) [ 1256.670512][ C3] xas_create (lib/xarray.c:685) [ 1256.670518][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1256.670522][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1256.670526][ C3] __xa_store (lib/xarray.c:1703) [ 1256.670530][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1256.670535][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1256.670537][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1256.670540][ C3] ? xa_store (lib/xarray.c:1734) [ 1256.670545][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1256.670549][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1256.670552][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1256.670557][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1256.670560][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1256.670563][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670567][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1256.670570][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1256.670576][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1256.670580][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1256.670585][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1256.670589][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1256.670594][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1256.670603][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1256.670607][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1256.670614][ C3] ksys_unshare (kernel/fork.c:3121) [ 1256.670619][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1256.670622][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1256.670626][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1256.670629][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1256.670632][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1256.670640][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1256.670643][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1256.670649][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1256.670652][ C3] RIP: 0033:0x7f439756d93b [ 1256.670657][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1256.670659][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1256.670663][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1256.670665][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1256.670667][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1256.670668][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1256.670671][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1272.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1272.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1272.656151][ C0] softirqs last disabled at (0): 0x0 | [ 1272.656164][ C0] Tainted: [L]=SOFTLOCKUP [ 1272.656166][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1272.656168][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1272.656178][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1272.656181][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1272.656184][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1272.656187][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1272.656189][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1272.656191][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1272.656193][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1272.656195][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1272.656197][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1272.656202][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1272.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1272.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1272.656207][ C0] PKRU: 55555554 [ 1272.656208][ C0] Call Trace: [ 1272.656213][ C0] [ 1272.656218][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1272.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1272.656228][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1272.656232][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1272.656241][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1272.656245][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1272.656248][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1272.656252][ C0] ? xa_store (lib/xarray.c:1734) [ 1272.656258][ C0] xa_store (lib/xarray.c:1734) [ 1272.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1272.656270][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1272.656274][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1272.656277][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1272.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1272.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1272.656291][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1272.656300][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1272.656304][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1272.656309][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1272.656317][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1272.656322][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1272.656331][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1272.656335][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1272.656342][ C0] ksys_unshare (kernel/fork.c:3121) [ 1272.656347][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1272.656351][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1272.656356][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1272.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1272.656363][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1272.656370][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1272.656374][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1272.656379][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1272.656384][ C0] RIP: 0033:0x7f439756d93b [ 1272.656388][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1272.656391][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1272.656394][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1272.656396][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1272.656398][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1272.656400][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1272.656402][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1276.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1276.669153][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1276.669157][ C2] softirqs last disabled at (0): 0x0 | [ 1276.669170][ C2] Tainted: [L]=SOFTLOCKUP [ 1276.669172][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1276.669175][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 1276.669183][ C2] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 1276.669186][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 1276.669189][ C2] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1276.669192][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1276.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1276.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1276.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1276.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1276.669204][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1276.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1276.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1276.669211][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1276.669213][ C2] PKRU: 55555554 [ 1276.669214][ C2] Call Trace: [ 1276.669218][ C2] [ 1276.669223][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1276.669233][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1276.669236][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1276.669242][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1276.669246][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1276.669253][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1276.669257][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1276.669260][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1276.669263][ C2] ? xa_store (lib/xarray.c:1734) [ 1276.669271][ C2] xa_store (lib/xarray.c:1734) [ 1276.669276][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1276.669283][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1276.669288][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1276.669291][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1276.669294][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1276.669301][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1276.669305][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1276.669312][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1276.669316][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1276.669321][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1276.669329][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1276.669334][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1276.669343][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1276.669348][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1276.669354][ C2] ksys_unshare (kernel/fork.c:3121) [ 1276.669359][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1276.669363][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1276.669368][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1276.669371][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1276.669375][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1276.669382][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1276.669387][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1276.669393][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1276.669398][ C2] RIP: 0033:0x7f439756d93b [ 1276.669404][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1276.669407][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1276.669410][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1276.669413][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1276.669415][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1276.669417][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1276.669419][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1282.121727][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1282.122018][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1282.122279][ C1] NMI backtrace for cpu 1 | [ 1282.122299][ C1] Tainted: [L]=SOFTLOCKUP [ 1282.122301][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1282.122304][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1282.122317][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1282.122321][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1282.122325][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1282.122327][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1282.122330][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1282.122332][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1282.122334][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1282.122336][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1282.122339][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1282.122342][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1282.122344][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1282.122346][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1282.122348][ C1] PKRU: 55555554 [ 1282.122349][ C1] Call Trace: [ 1282.122353][ C1] [ 1282.122358][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1282.122362][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1282.122368][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1282.122372][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1282.122380][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1282.122384][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1282.122387][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1282.122390][ C1] ? xa_store (lib/xarray.c:1734) [ 1282.122397][ C1] xa_store (lib/xarray.c:1734) [ 1282.122401][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1282.122408][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1282.122413][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1282.122424][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1282.122427][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.122434][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.122437][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1282.122445][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1282.122449][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1282.122454][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1282.122463][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1282.122467][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1282.122477][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1282.122482][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1282.122489][ C1] ksys_unshare (kernel/fork.c:3121) [ 1282.122496][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1282.122499][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1282.122505][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1282.122508][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1282.122512][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1282.122519][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1282.122524][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1282.122529][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1282.122535][ C1] RIP: 0033:0x7f439756d93b [ 1282.122541][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1282.122544][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1282.122548][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1282.122550][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1282.122552][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1282.122554][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1282.122556][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1282.122554][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1282.122556][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1282.122562][ C1] | [ 1282.123282][ C3] Tainted: [L]=SOFTLOCKUP [ 1282.123284][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1282.123286][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1282.123293][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1282.123296][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1282.123300][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1282.123302][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1282.123304][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1282.123306][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1282.123309][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1282.123311][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1282.123314][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1282.123319][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1282.123321][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1282.123324][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1282.123326][ C3] PKRU: 55555554 [ 1282.123328][ C3] Call Trace: [ 1282.123331][ C3] [ 1282.123333][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1282.123340][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1282.123345][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1282.123348][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1282.123352][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1282.123357][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1282.123361][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1282.123366][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1282.123369][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1282.123372][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1282.123375][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1282.123377][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1282.123380][ C3] ? xas_alloc (lib/xarray.c:378) [ 1282.123386][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1282.123390][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1282.123393][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1282.123397][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1282.123402][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1282.123406][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1282.123412][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123416][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1282.123424][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1282.123431][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123434][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1282.123437][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1282.123441][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1282.123444][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1282.123447][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1282.123454][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1282.123457][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1282.123460][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1282.123465][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1282.123469][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1282.123472][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1282.123475][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1282.123479][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123482][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1282.123487][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1282.123491][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1282.123494][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1282.123499][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1282.123502][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123506][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1282.123511][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1282.123515][ C3] handle_softirqs (kernel/softirq.c:579) [ 1282.123520][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1282.123524][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1282.123527][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1282.123531][ C3] [ 1282.123532][ C3] [ 1282.123534][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1282.123539][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1282.123542][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1282.123544][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1282.123547][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1282.123549][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1282.123550][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1282.123552][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1282.123554][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1282.123558][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1282.123564][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1282.123569][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1282.123572][ C3] ? xas_alloc (lib/xarray.c:378) [ 1282.123577][ C3] ? xas_alloc (lib/xarray.c:378) [ 1282.123580][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1282.123584][ C3] ? xas_alloc (lib/xarray.c:378) [ 1282.123586][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1282.123591][ C3] xas_alloc (lib/xarray.c:378) [ 1282.123596][ C3] xas_create (lib/xarray.c:685) [ 1282.123601][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1282.123605][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1282.123609][ C3] __xa_store (lib/xarray.c:1703) [ 1282.123613][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1282.123618][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1282.123621][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1282.123624][ C3] ? xa_store (lib/xarray.c:1734) [ 1282.123629][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1282.123632][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1282.123635][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1282.123644][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1282.123647][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1282.123649][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123654][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1282.123657][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1282.123662][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1282.123666][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1282.123671][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1282.123675][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1282.123680][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1282.123688][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1282.123692][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1282.123699][ C3] ksys_unshare (kernel/fork.c:3121) [ 1282.123705][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1282.123708][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1282.123712][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1282.123714][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1282.123718][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1282.123725][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1282.123728][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1282.123734][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1282.123737][ C3] RIP: 0033:0x7f439756d93b [ 1282.123741][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1282.123744][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1282.123747][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1282.123749][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1282.123750][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1282.123752][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1282.123753][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1300.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1300.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1300.656147][ C0] softirqs last disabled at (0): 0x0 | [ 1300.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 1300.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1300.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1300.656172][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1300.656175][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1300.656178][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1300.656181][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1300.656183][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1300.656184][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1300.656186][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1300.656189][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1300.656191][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1300.656195][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1300.656197][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1300.656198][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1300.656200][ C0] PKRU: 55555554 [ 1300.656202][ C0] Call Trace: [ 1300.656205][ C0] [ 1300.656210][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1300.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1300.656220][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1300.656224][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1300.656232][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1300.656236][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1300.656239][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1300.656242][ C0] ? xa_store (lib/xarray.c:1734) [ 1300.656249][ C0] xa_store (lib/xarray.c:1734) [ 1300.656253][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1300.656260][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1300.656266][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1300.656269][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1300.656271][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1300.656277][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1300.656281][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1300.656289][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1300.656292][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1300.656297][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1300.656304][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1300.656309][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1300.656317][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1300.656321][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1300.656328][ C0] ksys_unshare (kernel/fork.c:3121) [ 1300.656333][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1300.656337][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1300.656341][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1300.656344][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1300.656348][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1300.656355][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1300.656359][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1300.656364][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1300.656370][ C0] RIP: 0033:0x7f439756d93b [ 1300.656374][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1300.656377][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1300.656380][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1300.656381][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1300.656383][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1300.656385][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1300.656387][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1304.669144][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1304.669155][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1304.669159][ C2] softirqs last disabled at (0): 0x0 | [ 1304.669173][ C2] Tainted: [L]=SOFTLOCKUP [ 1304.669175][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1304.669178][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1304.669189][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1304.669193][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1304.669196][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1304.669199][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1304.669201][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1304.669203][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1304.669206][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1304.669207][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1304.669210][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1304.669214][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1304.669216][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1304.669217][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1304.669219][ C2] PKRU: 55555554 [ 1304.669220][ C2] Call Trace: [ 1304.669225][ C2] [ 1304.669229][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1304.669234][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1304.669239][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1304.669244][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1304.669259][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1304.669264][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1304.669266][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1304.669269][ C2] ? xa_store (lib/xarray.c:1734) [ 1304.669276][ C2] xa_store (lib/xarray.c:1734) [ 1304.669281][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1304.669287][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1304.669293][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1304.669296][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1304.669299][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1304.669306][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1304.669310][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1304.669318][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1304.669322][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1304.669327][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1304.669335][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1304.669340][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1304.669349][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1304.669353][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1304.669360][ C2] ksys_unshare (kernel/fork.c:3121) [ 1304.669365][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1304.669369][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1304.669375][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1304.669378][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1304.669382][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1304.669389][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1304.669393][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1304.669399][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1304.669405][ C2] RIP: 0033:0x7f439756d93b [ 1304.669410][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1304.669413][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1304.669416][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1304.669419][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1304.669421][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1304.669423][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1304.669425][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1308.669140][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1308.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1308.669154][ C1] softirqs last disabled at (0): 0x0 | [ 1308.669168][ C1] Tainted: [L]=SOFTLOCKUP [ 1308.669169][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1308.669172][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1308.669182][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1308.669186][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1308.669189][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1308.669191][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1308.669194][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1308.669196][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1308.669198][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1308.669200][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1308.669203][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1308.669207][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1308.669208][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1308.669210][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1308.669212][ C1] PKRU: 55555554 [ 1308.669213][ C1] Call Trace: [ 1308.669217][ C1] [ 1308.669221][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1308.669225][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1308.669240][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1308.669244][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1308.669252][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1308.669256][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1308.669259][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1308.669262][ C1] ? xa_store (lib/xarray.c:1734) [ 1308.669269][ C1] xa_store (lib/xarray.c:1734) [ 1308.669274][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1308.669281][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1308.669286][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1308.669289][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1308.669292][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.669299][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.669302][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1308.669310][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1308.669314][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1308.669319][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1308.669327][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1308.669332][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1308.669342][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1308.669346][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1308.669352][ C1] ksys_unshare (kernel/fork.c:3121) [ 1308.669357][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1308.669361][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1308.669366][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1308.669370][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1308.669373][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1308.669381][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1308.669385][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1308.669391][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1308.669396][ C1] RIP: 0033:0x7f439756d93b [ 1308.669401][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1308.669404][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1308.669407][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1308.669410][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1308.669412][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1308.669414][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1308.669416][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1308.670138][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1308.670147][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1308.670150][ C3] softirqs last disabled at (0): 0x0 | [ 1308.670163][ C3] Tainted: [L]=SOFTLOCKUP [ 1308.670165][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1308.670167][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1308.670174][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1308.670177][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1308.670181][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1308.670189][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1308.670191][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1308.670193][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1308.670195][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1308.670197][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1308.670200][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1308.670204][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1308.670206][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1308.670207][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1308.670209][ C3] PKRU: 55555554 [ 1308.670213][ C3] Call Trace: [ 1308.670216][ C3] [ 1308.670218][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1308.670224][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1308.670229][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1308.670232][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1308.670237][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1308.670242][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1308.670245][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1308.670250][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1308.670253][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1308.670256][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1308.670259][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1308.670262][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1308.670265][ C3] ? xas_alloc (lib/xarray.c:378) [ 1308.670270][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1308.670275][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1308.670278][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1308.670282][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1308.670287][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1308.670292][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1308.670297][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670301][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1308.670310][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1308.670316][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670320][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1308.670323][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1308.670326][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1308.670329][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1308.670332][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1308.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1308.670341][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1308.670344][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1308.670348][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1308.670354][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1308.670357][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1308.670360][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1308.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670369][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1308.670374][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1308.670378][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1308.670381][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1308.670386][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1308.670390][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670394][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1308.670398][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1308.670403][ C3] handle_softirqs (kernel/softirq.c:579) [ 1308.670409][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1308.670412][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1308.670416][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1308.670420][ C3] [ 1308.670421][ C3] [ 1308.670422][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1308.670428][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1308.670431][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1308.670434][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1308.670437][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1308.670439][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1308.670440][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1308.670442][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1308.670444][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1308.670448][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1308.670454][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1308.670460][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1308.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 1308.670468][ C3] ? xas_alloc (lib/xarray.c:378) [ 1308.670471][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1308.670475][ C3] ? xas_alloc (lib/xarray.c:378) [ 1308.670478][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1308.670483][ C3] xas_alloc (lib/xarray.c:378) [ 1308.670487][ C3] xas_create (lib/xarray.c:685) [ 1308.670493][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1308.670497][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1308.670501][ C3] __xa_store (lib/xarray.c:1703) [ 1308.670505][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1308.670510][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1308.670513][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1308.670515][ C3] ? xa_store (lib/xarray.c:1734) [ 1308.670520][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1308.670524][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1308.670527][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1308.670532][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1308.670535][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1308.670540][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670544][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1308.670547][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1308.670552][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1308.670558][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1308.670563][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1308.670567][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1308.670572][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1308.670580][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1308.670584][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1308.670591][ C3] ksys_unshare (kernel/fork.c:3121) [ 1308.670596][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1308.670599][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1308.670603][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1308.670605][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1308.670609][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1308.670616][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1308.670620][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1308.670626][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1308.670629][ C3] RIP: 0033:0x7f439756d93b [ 1308.670634][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1308.670636][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1308.670639][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1308.670641][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1308.670643][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1308.670645][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1308.670647][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1328.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1328.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1328.656147][ C0] softirqs last disabled at (0): 0x0 | [ 1328.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 1328.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1328.656163][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1328.656171][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1328.656174][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1328.656177][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1328.656180][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1328.656181][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1328.656183][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1328.656185][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1328.656187][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1328.656190][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1328.656194][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1328.656197][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1328.656198][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1328.656200][ C0] PKRU: 55555554 [ 1328.656201][ C0] Call Trace: [ 1328.656206][ C0] [ 1328.656209][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1328.656213][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1328.656218][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1328.656222][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1328.656231][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1328.656234][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1328.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1328.656240][ C0] ? xa_store (lib/xarray.c:1734) [ 1328.656247][ C0] xa_store (lib/xarray.c:1734) [ 1328.656252][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1328.656257][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1328.656263][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1328.656266][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1328.656269][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1328.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1328.656284][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1328.656291][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1328.656295][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1328.656300][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1328.656307][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1328.656312][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1328.656320][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1328.656324][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1328.656331][ C0] ksys_unshare (kernel/fork.c:3121) [ 1328.656336][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1328.656339][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1328.656344][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1328.656347][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1328.656350][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1328.656357][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1328.656361][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1328.656366][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1328.656371][ C0] RIP: 0033:0x7f439756d93b [ 1328.656375][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1328.656378][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1328.656382][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1328.656384][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1328.656386][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1328.656387][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1328.656389][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1332.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1332.669152][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1332.669156][ C2] softirqs last disabled at (0): 0x0 | [ 1332.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 1332.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1332.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1332.669184][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1332.669188][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1332.669191][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1332.669194][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1332.669196][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1332.669198][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1332.669200][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1332.669202][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1332.669204][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1332.669208][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1332.669210][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1332.669212][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1332.669213][ C2] PKRU: 55555554 [ 1332.669214][ C2] Call Trace: [ 1332.669220][ C2] [ 1332.669224][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1332.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1332.669234][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1332.669239][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1332.669246][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1332.669250][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1332.669253][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1332.669256][ C2] ? xa_store (lib/xarray.c:1734) [ 1332.669263][ C2] xa_store (lib/xarray.c:1734) [ 1332.669268][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1332.669274][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1332.669279][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1332.669290][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1332.669294][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1332.669301][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1332.669304][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1332.669312][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1332.669316][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1332.669321][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1332.669329][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1332.669334][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1332.669344][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1332.669348][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1332.669355][ C2] ksys_unshare (kernel/fork.c:3121) [ 1332.669360][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1332.669364][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1332.669369][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1332.669372][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1332.669376][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1332.669383][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1332.669387][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1332.669393][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1332.669399][ C2] RIP: 0033:0x7f439756d93b [ 1332.669404][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1332.669407][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1332.669410][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1332.669412][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1332.669414][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1332.669416][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1332.669418][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1336.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1336.669153][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1336.669157][ C1] softirqs last disabled at (0): 0x0 | [ 1336.669171][ C1] Tainted: [L]=SOFTLOCKUP [ 1336.669173][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1336.669176][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1336.669187][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1336.669190][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1336.669194][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1336.669196][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1336.669198][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1336.669200][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1336.669203][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1336.669205][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1336.669207][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1336.669211][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1336.669213][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1336.669215][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1336.669217][ C1] PKRU: 55555554 [ 1336.669218][ C1] Call Trace: [ 1336.669223][ C1] [ 1336.669227][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1336.669232][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1336.669238][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1336.669243][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1336.669250][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1336.669255][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1336.669258][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1336.669261][ C1] ? xa_store (lib/xarray.c:1734) [ 1336.669268][ C1] xa_store (lib/xarray.c:1734) [ 1336.669282][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1336.669289][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1336.669294][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1336.669297][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1336.669300][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.669307][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.669311][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1336.669319][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1336.669323][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1336.669328][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1336.669335][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1336.669340][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1336.669350][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1336.669354][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1336.669361][ C1] ksys_unshare (kernel/fork.c:3121) [ 1336.669366][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1336.669370][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1336.669375][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1336.669379][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1336.669382][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1336.669390][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1336.669394][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1336.669399][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1336.669405][ C1] RIP: 0033:0x7f439756d93b [ 1336.669411][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1336.669414][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1336.669417][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1336.669419][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1336.669421][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1336.669423][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1336.669425][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1336.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1336.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1336.670147][ C3] softirqs last disabled at (0): 0x0 | [ 1336.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 1336.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1336.670163][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1336.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1336.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1336.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1336.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1336.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1336.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1336.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1336.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1336.670188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1336.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1336.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1336.670196][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1336.670198][ C3] PKRU: 55555554 [ 1336.670199][ C3] Call Trace: [ 1336.670203][ C3] [ 1336.670205][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1336.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1336.670216][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1336.670219][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1336.670223][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1336.670228][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1336.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1336.670241][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1336.670244][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1336.670248][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1336.670250][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1336.670253][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1336.670256][ C3] ? xas_alloc (lib/xarray.c:378) [ 1336.670262][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1336.670267][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1336.670270][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1336.670274][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1336.670279][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1336.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1336.670289][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670293][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1336.670301][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1336.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1336.670314][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1336.670321][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1336.670324][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1336.670327][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1336.670333][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1336.670336][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1336.670339][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1336.670343][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1336.670348][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1336.670352][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1336.670355][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1336.670359][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670362][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1336.670367][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1336.670372][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1336.670374][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1336.670380][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1336.670384][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670387][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1336.670392][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1336.670397][ C3] handle_softirqs (kernel/softirq.c:579) [ 1336.670402][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1336.670406][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1336.670410][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1336.670414][ C3] [ 1336.670415][ C3] [ 1336.670417][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1336.670423][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1336.670426][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1336.670429][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1336.670431][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1336.670433][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1336.670436][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1336.670437][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1336.670439][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1336.670443][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1336.670449][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1336.670455][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1336.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 1336.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 1336.670466][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1336.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 1336.670472][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1336.670477][ C3] xas_alloc (lib/xarray.c:378) [ 1336.670482][ C3] xas_create (lib/xarray.c:685) [ 1336.670488][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1336.670493][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1336.670496][ C3] __xa_store (lib/xarray.c:1703) [ 1336.670500][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1336.670505][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1336.670508][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1336.670511][ C3] ? xa_store (lib/xarray.c:1734) [ 1336.670516][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1336.670520][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1336.670524][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1336.670529][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1336.670531][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1336.670534][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670538][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1336.670542][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1336.670546][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1336.670550][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1336.670555][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1336.670559][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1336.670564][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1336.670573][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1336.670576][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1336.670583][ C3] ksys_unshare (kernel/fork.c:3121) [ 1336.670590][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1336.670593][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1336.670597][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1336.670599][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1336.670603][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1336.670610][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1336.670613][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1336.670619][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1336.670622][ C3] RIP: 0033:0x7f439756d93b [ 1336.670626][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1336.670629][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1336.670632][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1336.670634][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1336.670636][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1336.670638][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1336.670640][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1356.656163][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1356.656173][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1356.656177][ C0] softirqs last disabled at (0): 0x0 | [ 1356.656196][ C0] Tainted: [L]=SOFTLOCKUP [ 1356.656198][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1356.656202][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1356.656212][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1356.656215][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1356.656221][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1356.656224][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1356.656226][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1356.656228][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1356.656230][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1356.656232][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1356.656235][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1356.656239][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1356.656241][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1356.656242][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1356.656244][ C0] PKRU: 55555554 [ 1356.656245][ C0] Call Trace: [ 1356.656251][ C0] [ 1356.656257][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1356.656261][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1356.656267][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1356.656272][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1356.656280][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1356.656284][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1356.656287][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1356.656290][ C0] ? xa_store (lib/xarray.c:1734) [ 1356.656300][ C0] xa_store (lib/xarray.c:1734) [ 1356.656307][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1356.656317][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1356.656323][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1356.656326][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1356.656329][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1356.656336][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1356.656340][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1356.656347][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1356.656351][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1356.656356][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1356.656365][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1356.656370][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1356.656383][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1356.656387][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1356.656396][ C0] ksys_unshare (kernel/fork.c:3121) [ 1356.656402][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1356.656406][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1356.656411][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1356.656414][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1356.656418][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1356.656426][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1356.656430][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1356.656436][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1356.656441][ C0] RIP: 0033:0x7f439756d93b [ 1356.656446][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1356.656448][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1356.656452][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1356.656454][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1356.656456][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1356.656458][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1356.656460][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1360.135605][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1360.135898][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1360.136173][ C1] NMI backtrace for cpu 1 | [ 1360.136199][ C1] Tainted: [L]=SOFTLOCKUP [ 1360.136202][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1360.136205][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 1360.136218][ C1] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 1360.136223][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000246 [ 1360.136230][ C1] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 1360.136238][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1360.136241][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1360.136245][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1360.136248][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1360.136252][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1360.136256][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1360.136262][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1360.136266][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1360.136269][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1360.136271][ C1] PKRU: 55555554 [ 1360.136274][ C1] Call Trace: [ 1360.136279][ C1] [ 1360.136286][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1360.136298][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1360.136303][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.136310][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.136316][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1360.136327][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1360.136333][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.136338][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.136343][ C1] ? xa_store (lib/xarray.c:1734) [ 1360.136353][ C1] xa_store (lib/xarray.c:1734) [ 1360.136360][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1360.136367][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1360.136375][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.136379][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.136383][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.136392][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.136397][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1360.136406][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1360.136416][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1360.136426][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1360.136436][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1360.136443][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1360.136456][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1360.136462][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1360.136471][ C1] ksys_unshare (kernel/fork.c:3121) [ 1360.136481][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1360.136486][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1360.136493][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1360.136498][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1360.136503][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1360.136512][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1360.136518][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1360.136526][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1360.136533][ C1] RIP: 0033:0x7f439756d93b [ 1360.136542][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1360.136546][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1360.136551][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1360.136554][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1360.136557][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1360.136559][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1360.136562][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1360.136559][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1360.136562][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1360.136569][ C1] | [ 1360.137155][ C3] Tainted: [L]=SOFTLOCKUP [ 1360.137156][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1360.137158][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1360.137165][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1360.137168][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1360.137172][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1360.137175][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1360.137177][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1360.137179][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1360.137181][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1360.137183][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1360.137188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1360.137193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1360.137195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1360.137197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1360.137199][ C3] PKRU: 55555554 [ 1360.137200][ C3] Call Trace: [ 1360.137202][ C3] [ 1360.137203][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1360.137209][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1360.137214][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1360.137218][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1360.137224][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1360.137229][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1360.137232][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1360.137237][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1360.137240][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1360.137243][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1360.137246][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1360.137248][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1360.137251][ C3] ? xas_alloc (lib/xarray.c:378) [ 1360.137257][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1360.137261][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.137264][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.137268][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1360.137273][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1360.137277][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1360.137282][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137286][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1360.137294][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1360.137301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1360.137307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1360.137310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1360.137314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1360.137317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1360.137324][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1360.137327][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1360.137330][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1360.137334][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1360.137339][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1360.137342][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1360.137345][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1360.137348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137352][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1360.137356][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1360.137360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1360.137363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1360.137368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1360.137372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137375][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1360.137380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1360.137384][ C3] handle_softirqs (kernel/softirq.c:579) [ 1360.137389][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1360.137393][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1360.137396][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1360.137399][ C3] [ 1360.137400][ C3] [ 1360.137404][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1360.137408][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1360.137411][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1360.137414][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1360.137417][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1360.137419][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1360.137420][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1360.137422][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1360.137424][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1360.137428][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1360.137433][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1360.137439][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1360.137442][ C3] ? xas_alloc (lib/xarray.c:378) [ 1360.137447][ C3] ? xas_alloc (lib/xarray.c:378) [ 1360.137450][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1360.137454][ C3] ? xas_alloc (lib/xarray.c:378) [ 1360.137456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1360.137461][ C3] xas_alloc (lib/xarray.c:378) [ 1360.137466][ C3] xas_create (lib/xarray.c:685) [ 1360.137472][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1360.137476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.137480][ C3] __xa_store (lib/xarray.c:1703) [ 1360.137484][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1360.137488][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.137491][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.137494][ C3] ? xa_store (lib/xarray.c:1734) [ 1360.137499][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1360.137503][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1360.137508][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1360.137513][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.137516][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.137519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.137528][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1360.137533][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1360.137537][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1360.137542][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1360.137546][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1360.137551][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1360.137559][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1360.137563][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1360.137570][ C3] ksys_unshare (kernel/fork.c:3121) [ 1360.137576][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1360.137579][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1360.137582][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1360.137585][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1360.137588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1360.137598][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1360.137602][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1360.137608][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1360.137611][ C3] RIP: 0033:0x7f439756d93b [ 1360.137616][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1360.137618][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1360.137622][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1360.137623][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1360.137625][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1360.137627][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1360.137629][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1360.669154][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1360.669165][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1360.669170][ C2] softirqs last disabled at (0): 0x0 | [ 1360.669186][ C2] Tainted: [L]=SOFTLOCKUP [ 1360.669188][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1360.669191][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1360.669199][ C2] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1360.669204][ C2] RSP: 0018:ffffc900034d7a00 EFLAGS: 00000282 [ 1360.669209][ C2] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1360.669212][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1360.669214][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1360.669217][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1360.669220][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1360.669222][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1360.669226][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1360.669233][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1360.669237][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1360.669239][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1360.669242][ C2] PKRU: 55555554 [ 1360.669243][ C2] Call Trace: [ 1360.669249][ C2] [ 1360.669254][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1360.669267][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1360.669271][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.669278][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.669284][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1360.669293][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1360.669299][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.669325][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1360.669329][ C2] ? xa_store (lib/xarray.c:1734) [ 1360.669341][ C2] xa_store (lib/xarray.c:1734) [ 1360.669348][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1360.669355][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1360.669363][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1360.669368][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1360.669372][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.669381][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1360.669385][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1360.669394][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1360.669400][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1360.669407][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1360.669416][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1360.669423][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1360.669436][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1360.669442][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1360.669450][ C2] ksys_unshare (kernel/fork.c:3121) [ 1360.669457][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1360.669462][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1360.669469][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1360.669473][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1360.669478][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1360.669488][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1360.669494][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1360.669501][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1360.669508][ C2] RIP: 0033:0x7f439756d93b [ 1360.669516][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1360.669520][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1360.669524][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1360.669527][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1360.669530][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1360.669532][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1360.669534][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1384.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1384.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1384.656148][ C0] softirqs last disabled at (0): 0x0 | [ 1384.656160][ C0] Tainted: [L]=SOFTLOCKUP [ 1384.656162][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1384.656164][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1384.656171][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1384.656174][ C0] RSP: 0018:ffffc900034c7a00 EFLAGS: 00000282 [ 1384.656189][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1384.656191][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1384.656193][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1384.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1384.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1384.656199][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1384.656202][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1384.656206][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1384.656208][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1384.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1384.656211][ C0] PKRU: 55555554 [ 1384.656212][ C0] Call Trace: [ 1384.656216][ C0] [ 1384.656219][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1384.656227][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1384.656231][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.656239][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.656243][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1384.656251][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1384.656255][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.656257][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.656260][ C0] ? xa_store (lib/xarray.c:1734) [ 1384.656267][ C0] xa_store (lib/xarray.c:1734) [ 1384.656272][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1384.656278][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1384.656283][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.656286][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.656289][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.656294][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.656298][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1384.656305][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1384.656309][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1384.656314][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1384.656320][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1384.656325][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1384.656333][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1384.656337][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1384.656342][ C0] ksys_unshare (kernel/fork.c:3121) [ 1384.656347][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1384.656351][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1384.656355][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1384.656358][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1384.656362][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1384.656368][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1384.656372][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1384.656377][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1384.656381][ C0] RIP: 0033:0x7f439756d93b [ 1384.656388][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1384.656391][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1384.656394][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1384.656396][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1384.656398][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1384.656400][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1384.656402][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1384.669131][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1384.669137][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1384.669141][ C1] softirqs last disabled at (0): 0x0 | [ 1384.669151][ C1] Tainted: [L]=SOFTLOCKUP [ 1384.669153][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1384.669155][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1384.669160][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1384.669164][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1384.669167][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1384.669169][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1384.669171][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1384.669172][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1384.669174][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1384.669176][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1384.669179][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1384.669182][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1384.669184][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1384.669186][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1384.669188][ C1] PKRU: 55555554 [ 1384.669189][ C1] Call Trace: [ 1384.669197][ C1] [ 1384.669200][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1384.669204][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.669209][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.669212][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1384.669218][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1384.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.669225][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.669228][ C1] ? xa_store (lib/xarray.c:1734) [ 1384.669233][ C1] xa_store (lib/xarray.c:1734) [ 1384.669237][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1384.669242][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1384.669247][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.669252][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.669255][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.669259][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.669263][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1384.669268][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1384.669273][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1384.669277][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1384.669282][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1384.669286][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1384.669293][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1384.669297][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1384.669302][ C1] ksys_unshare (kernel/fork.c:3121) [ 1384.669307][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1384.669310][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1384.669314][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1384.669317][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1384.669320][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1384.669326][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1384.669330][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1384.669335][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1384.669338][ C1] RIP: 0033:0x7f439756d93b [ 1384.669343][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1384.669345][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1384.669348][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1384.669351][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1384.669352][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1384.669354][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1384.669356][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1384.670123][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1384.670128][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1384.670131][ C3] softirqs last disabled at (0): 0x0 | [ 1384.670141][ C3] Tainted: [L]=SOFTLOCKUP [ 1384.670142][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1384.670144][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1384.670149][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1384.670152][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1384.670154][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1384.670156][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1384.670158][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1384.670160][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1384.670162][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1384.670167][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1384.670170][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1384.670173][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1384.670175][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1384.670180][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1384.670181][ C3] PKRU: 55555554 [ 1384.670183][ C3] Call Trace: [ 1384.670185][ C3] [ 1384.670186][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1384.670190][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1384.670195][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1384.670199][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1384.670203][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1384.670207][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1384.670210][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1384.670214][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1384.670217][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1384.670221][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1384.670223][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1384.670226][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1384.670229][ C3] ? xas_alloc (lib/xarray.c:378) [ 1384.670233][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1384.670237][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.670240][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.670243][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1384.670248][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1384.670252][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1384.670257][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670261][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1384.670266][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1384.670270][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670273][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1384.670276][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1384.670280][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1384.670283][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1384.670286][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1384.670291][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1384.670294][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1384.670297][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1384.670301][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1384.670305][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1384.670308][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1384.670311][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1384.670314][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670317][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1384.670321][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1384.670328][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1384.670330][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1384.670336][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1384.670340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670343][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1384.670348][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1384.670352][ C3] handle_softirqs (kernel/softirq.c:579) [ 1384.670358][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1384.670362][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1384.670365][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1384.670369][ C3] [ 1384.670370][ C3] [ 1384.670371][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1384.670375][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1384.670378][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1384.670381][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1384.670384][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1384.670385][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1384.670387][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1384.670389][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1384.670391][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1384.670395][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1384.670401][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1384.670406][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1384.670410][ C3] ? xas_alloc (lib/xarray.c:378) [ 1384.670414][ C3] ? xas_alloc (lib/xarray.c:378) [ 1384.670417][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1384.670422][ C3] ? xas_alloc (lib/xarray.c:378) [ 1384.670424][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1384.670429][ C3] xas_alloc (lib/xarray.c:378) [ 1384.670434][ C3] xas_create (lib/xarray.c:685) [ 1384.670440][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1384.670444][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.670448][ C3] __xa_store (lib/xarray.c:1703) [ 1384.670452][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1384.670457][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.670459][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1384.670462][ C3] ? xa_store (lib/xarray.c:1734) [ 1384.670467][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1384.670471][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1384.670474][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1384.670479][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1384.670481][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1384.670484][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670488][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1384.670493][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1384.670498][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1384.670503][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1384.670508][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1384.670511][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1384.670516][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1384.670523][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1384.670526][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1384.670531][ C3] ksys_unshare (kernel/fork.c:3121) [ 1384.670535][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1384.670538][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1384.670542][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1384.670545][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1384.670548][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1384.670553][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1384.670557][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1384.670561][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1384.670564][ C3] RIP: 0033:0x7f439756d93b [ 1384.670567][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1384.670570][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1384.670573][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1384.670575][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1384.670576][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1384.670578][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1384.670580][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1388.669145][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1388.669155][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1388.669159][ C2] softirqs last disabled at (0): 0x0 | [ 1388.669173][ C2] Tainted: [L]=SOFTLOCKUP [ 1388.669175][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1388.669178][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1388.669188][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1388.669191][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1388.669195][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1388.669197][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1388.669199][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1388.669201][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1388.669203][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1388.669205][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1388.669208][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1388.669213][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1388.669215][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1388.669226][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1388.669227][ C2] PKRU: 55555554 [ 1388.669229][ C2] Call Trace: [ 1388.669234][ C2] [ 1388.669239][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1388.669243][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1388.669250][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1388.669254][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1388.669262][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1388.669266][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1388.669269][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1388.669272][ C2] ? xa_store (lib/xarray.c:1734) [ 1388.669279][ C2] xa_store (lib/xarray.c:1734) [ 1388.669284][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1388.669290][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1388.669295][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1388.669300][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1388.669304][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1388.669311][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1388.669314][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1388.669322][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1388.669326][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1388.669331][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1388.669339][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1388.669344][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1388.669354][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1388.669358][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1388.669365][ C2] ksys_unshare (kernel/fork.c:3121) [ 1388.669370][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1388.669374][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1388.669379][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1388.669382][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1388.669385][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1388.669393][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1388.669397][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1388.669403][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1388.669408][ C2] RIP: 0033:0x7f439756d93b [ 1388.669413][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1388.669416][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1388.669419][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1388.669422][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1388.669424][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1388.669426][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1388.669427][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1412.656146][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1412.656154][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1412.656158][ C0] softirqs last disabled at (0): 0x0 | [ 1412.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 1412.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1412.656173][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:171 mm/kasan/generic.c:189) [ 1412.656179][ C0] Code: 00 00 e9 2f 4d 36 02 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 <48> 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 All code ======== 0: 00 00 add %al,(%rax) 2: e9 2f 4d 36 02 jmp 0x2364d36 7: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 00 12: 0f 1f 40 00 nopl 0x0(%rax) 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 66 0f 1f 00 nopw (%rax) 2a:* 48 85 f6 test %rsi,%rsi <-- trapping instruction 2d: 0f 84 5e 01 00 00 je 0x191 33: 48 89 f8 mov %rdi,%rax 36: 41 54 push %r12 38: 44 0f b6 c2 movzbl %dl,%r8d 3c: 48 01 f0 add %rsi,%rax 3f: 55 push %rbp Code starting with the faulting instruction =========================================== 0: 48 85 f6 test %rsi,%rsi 3: 0f 84 5e 01 00 00 je 0x167 9: 48 89 f8 mov %rdi,%rax c: 41 54 push %r12 e: 44 0f b6 c2 movzbl %dl,%r8d 12: 48 01 f0 add %rsi,%rax 15: 55 push %rbp [ 1412.656182][ C0] RSP: 0018:ffffc900034c7a10 EFLAGS: 00000246 [ 1412.656185][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1412.656187][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1412.656189][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1412.656191][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1412.656193][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1412.656195][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1412.656198][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1412.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1412.656204][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1412.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1412.656207][ C0] PKRU: 55555554 [ 1412.656208][ C0] Call Trace: [ 1412.656213][ C0] [ 1412.656215][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1412.656224][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1412.656227][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.656232][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.656236][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1412.656244][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1412.656247][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.656250][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.656253][ C0] ? xa_store (lib/xarray.c:1734) [ 1412.656259][ C0] xa_store (lib/xarray.c:1734) [ 1412.656267][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1412.656272][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1412.656277][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.656280][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.656283][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.656289][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.656293][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1412.656299][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1412.656303][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1412.656308][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1412.656314][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1412.656319][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1412.656329][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1412.656333][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1412.656339][ C0] ksys_unshare (kernel/fork.c:3121) [ 1412.656344][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1412.656347][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1412.656351][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1412.656354][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1412.656358][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1412.656365][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1412.656369][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1412.656374][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1412.656379][ C0] RIP: 0033:0x7f439756d93b [ 1412.656383][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1412.656386][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1412.656389][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1412.656391][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1412.656393][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1412.656395][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1412.656397][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1412.669133][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1412.669140][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1412.669143][ C1] softirqs last disabled at (0): 0x0 | [ 1412.669154][ C1] Tainted: [L]=SOFTLOCKUP [ 1412.669155][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1412.669157][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1412.669163][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1412.669166][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1412.669169][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1412.669171][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1412.669173][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1412.669175][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1412.669177][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1412.669179][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1412.669181][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1412.669185][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1412.669187][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1412.669189][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1412.669191][ C1] PKRU: 55555554 [ 1412.669192][ C1] Call Trace: [ 1412.669195][ C1] [ 1412.669198][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1412.669207][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.669212][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.669215][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1412.669221][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1412.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.669230][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.669233][ C1] ? xa_store (lib/xarray.c:1734) [ 1412.669239][ C1] xa_store (lib/xarray.c:1734) [ 1412.669243][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1412.669247][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1412.669252][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.669255][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.669258][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.669263][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.669267][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1412.669273][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1412.669277][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1412.669281][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1412.669287][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1412.669291][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1412.669298][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1412.669302][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1412.669307][ C1] ksys_unshare (kernel/fork.c:3121) [ 1412.669311][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1412.669314][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1412.669318][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1412.669321][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1412.669325][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1412.669330][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1412.669334][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1412.669339][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1412.669343][ C1] RIP: 0033:0x7f439756d93b [ 1412.669347][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1412.669349][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1412.669352][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1412.669355][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1412.669356][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1412.669358][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1412.669360][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1412.670125][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1412.670130][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1412.670134][ C3] softirqs last disabled at (0): 0x0 | [ 1412.670147][ C3] Tainted: [L]=SOFTLOCKUP [ 1412.670149][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1412.670150][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:171 mm/kasan/generic.c:189) [ 1412.670154][ C3] Code: 00 00 e9 2f 4d 36 02 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 <48> 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 All code ======== 0: 00 00 add %al,(%rax) 2: e9 2f 4d 36 02 jmp 0x2364d36 7: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 00 12: 0f 1f 40 00 nopl 0x0(%rax) 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 66 0f 1f 00 nopw (%rax) 2a:* 48 85 f6 test %rsi,%rsi <-- trapping instruction 2d: 0f 84 5e 01 00 00 je 0x191 33: 48 89 f8 mov %rdi,%rax 36: 41 54 push %r12 38: 44 0f b6 c2 movzbl %dl,%r8d 3c: 48 01 f0 add %rsi,%rax 3f: 55 push %rbp Code starting with the faulting instruction =========================================== 0: 48 85 f6 test %rsi,%rsi 3: 0f 84 5e 01 00 00 je 0x167 9: 48 89 f8 mov %rdi,%rax c: 41 54 push %r12 e: 44 0f b6 c2 movzbl %dl,%r8d 12: 48 01 f0 add %rsi,%rax 15: 55 push %rbp [ 1412.670157][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000246 [ 1412.670160][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1412.670162][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1412.670164][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1412.670166][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1412.670168][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1412.670170][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1412.670173][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1412.670176][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1412.670178][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1412.670180][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1412.670181][ C3] PKRU: 55555554 [ 1412.670183][ C3] Call Trace: [ 1412.670185][ C3] [ 1412.670186][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1412.670191][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1412.670195][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1412.670200][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1412.670206][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1412.670211][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1412.670215][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1412.670219][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1412.670222][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1412.670225][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1412.670229][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1412.670232][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1412.670234][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1412.670237][ C3] ? xas_alloc (lib/xarray.c:378) [ 1412.670242][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1412.670245][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.670248][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.670251][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1412.670256][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1412.670260][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1412.670266][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670269][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1412.670274][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1412.670278][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670282][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1412.670285][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1412.670288][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1412.670293][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1412.670296][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1412.670301][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1412.670304][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1412.670307][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1412.670312][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1412.670315][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1412.670319][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1412.670322][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1412.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670328][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1412.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1412.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1412.670341][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1412.670346][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1412.670350][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670354][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1412.670358][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1412.670363][ C3] handle_softirqs (kernel/softirq.c:579) [ 1412.670368][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1412.670372][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1412.670375][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1412.670379][ C3] [ 1412.670380][ C3] [ 1412.670382][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1412.670386][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1412.670389][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1412.670392][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1412.670395][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1412.670397][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1412.670399][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1412.670401][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1412.670403][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1412.670407][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1412.670413][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1412.670418][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1412.670422][ C3] ? xas_alloc (lib/xarray.c:378) [ 1412.670427][ C3] ? xas_alloc (lib/xarray.c:378) [ 1412.670430][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1412.670434][ C3] ? xas_alloc (lib/xarray.c:378) [ 1412.670436][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1412.670442][ C3] xas_alloc (lib/xarray.c:378) [ 1412.670446][ C3] xas_create (lib/xarray.c:685) [ 1412.670452][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1412.670456][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.670460][ C3] __xa_store (lib/xarray.c:1703) [ 1412.670464][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1412.670471][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.670474][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1412.670477][ C3] ? xa_store (lib/xarray.c:1734) [ 1412.670482][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1412.670486][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1412.670489][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1412.670494][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1412.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1412.670499][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670504][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1412.670507][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1412.670512][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1412.670515][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1412.670520][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1412.670523][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1412.670530][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1412.670536][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1412.670540][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1412.670544][ C3] ksys_unshare (kernel/fork.c:3121) [ 1412.670548][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1412.670552][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1412.670555][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1412.670558][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1412.670561][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1412.670566][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1412.670570][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1412.670574][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1412.670577][ C3] RIP: 0033:0x7f439756d93b [ 1412.670581][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1412.670583][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1412.670586][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1412.670588][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1412.670590][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1412.670592][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1412.670593][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1416.669147][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1416.669157][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1416.669161][ C2] softirqs last disabled at (0): 0x0 | [ 1416.669175][ C2] Tainted: [L]=SOFTLOCKUP [ 1416.669177][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1416.669202][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1416.669213][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1416.669217][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1416.669220][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1416.669223][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1416.669225][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1416.669227][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1416.669229][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1416.669231][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1416.669234][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1416.669241][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1416.669243][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1416.669245][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1416.669246][ C2] PKRU: 55555554 [ 1416.669248][ C2] Call Trace: [ 1416.669253][ C2] [ 1416.669258][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1416.669262][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1416.669268][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1416.669273][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1416.669281][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1416.669285][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1416.669288][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1416.669291][ C2] ? xa_store (lib/xarray.c:1734) [ 1416.669299][ C2] xa_store (lib/xarray.c:1734) [ 1416.669304][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1416.669310][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1416.669316][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1416.669319][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1416.669322][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1416.669329][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1416.669333][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1416.669341][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1416.669349][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1416.669354][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1416.669362][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1416.669367][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1416.669377][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1416.669381][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1416.669389][ C2] ksys_unshare (kernel/fork.c:3121) [ 1416.669394][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1416.669398][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1416.669404][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1416.669407][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1416.669411][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1416.669418][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1416.669422][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1416.669433][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1416.669438][ C2] RIP: 0033:0x7f439756d93b [ 1416.669444][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1416.669447][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1416.669451][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1416.669453][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1416.669455][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1416.669457][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1416.669459][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1438.148004][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1438.148277][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1438.148540][ C1] NMI backtrace for cpu 1 | [ 1438.148562][ C1] Tainted: [L]=SOFTLOCKUP [ 1438.148564][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1438.148567][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1438.148580][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1438.148597][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1438.148601][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1438.148604][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1438.148606][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1438.148608][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1438.148610][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1438.148613][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1438.148615][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1438.148620][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1438.148622][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1438.148624][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1438.148626][ C1] PKRU: 55555554 [ 1438.148627][ C1] Call Trace: [ 1438.148631][ C1] [ 1438.148636][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1438.148641][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1438.148647][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1438.148651][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1438.148658][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1438.148662][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1438.148665][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1438.148668][ C1] ? xa_store (lib/xarray.c:1734) [ 1438.148676][ C1] xa_store (lib/xarray.c:1734) [ 1438.148680][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1438.148687][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1438.148692][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1438.148695][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1438.148698][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.148705][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.148708][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1438.148716][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1438.148720][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1438.148725][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1438.148732][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1438.148742][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1438.148751][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1438.148755][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1438.148763][ C1] ksys_unshare (kernel/fork.c:3121) [ 1438.148770][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1438.148774][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1438.148779][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1438.148783][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1438.148786][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1438.148794][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1438.148798][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1438.148805][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1438.148810][ C1] RIP: 0033:0x7f439756d93b [ 1438.148817][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1438.148820][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1438.148824][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1438.148826][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1438.148828][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1438.148830][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1438.148832][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1438.148830][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1438.148832][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1438.148838][ C1] | [ 1438.149541][ C3] Tainted: [L]=SOFTLOCKUP [ 1438.149543][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1438.149545][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1438.149553][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1438.149556][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1438.149560][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1438.149563][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1438.149565][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1438.149567][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1438.149569][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1438.149574][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1438.149577][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1438.149581][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1438.149583][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1438.149585][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1438.149587][ C3] PKRU: 55555554 [ 1438.149588][ C3] Call Trace: [ 1438.149591][ C3] [ 1438.149592][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1438.149598][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1438.149602][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1438.149606][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1438.149610][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1438.149614][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1438.149620][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1438.149625][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1438.149627][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1438.149631][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1438.149634][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1438.149636][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1438.149640][ C3] ? xas_alloc (lib/xarray.c:378) [ 1438.149645][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1438.149649][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1438.149652][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1438.149656][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1438.149662][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1438.149666][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1438.149671][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149676][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1438.149682][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1438.149688][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149691][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1438.149694][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1438.149697][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1438.149701][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1438.149703][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1438.149709][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1438.149712][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1438.149715][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1438.149720][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1438.149724][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1438.149727][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1438.149730][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1438.149734][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149737][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1438.149742][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1438.149747][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1438.149749][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1438.149754][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1438.149758][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149762][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1438.149767][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1438.149771][ C3] handle_softirqs (kernel/softirq.c:579) [ 1438.149776][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1438.149779][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1438.149783][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1438.149786][ C3] [ 1438.149787][ C3] [ 1438.149789][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1438.149793][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1438.149797][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1438.149800][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1438.149803][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1438.149805][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1438.149807][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1438.149809][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1438.149810][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1438.149814][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1438.149820][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1438.149825][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1438.149829][ C3] ? xas_alloc (lib/xarray.c:378) [ 1438.149834][ C3] ? xas_alloc (lib/xarray.c:378) [ 1438.149837][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1438.149841][ C3] ? xas_alloc (lib/xarray.c:378) [ 1438.149843][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1438.149848][ C3] xas_alloc (lib/xarray.c:378) [ 1438.149853][ C3] xas_create (lib/xarray.c:685) [ 1438.149858][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1438.149863][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1438.149866][ C3] __xa_store (lib/xarray.c:1703) [ 1438.149871][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1438.149875][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1438.149878][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1438.149883][ C3] ? xa_store (lib/xarray.c:1734) [ 1438.149888][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1438.149892][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1438.149896][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1438.149901][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1438.149904][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1438.149907][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149911][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1438.149914][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1438.149919][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1438.149923][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1438.149928][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1438.149931][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1438.149936][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1438.149943][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1438.149947][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1438.149952][ C3] ksys_unshare (kernel/fork.c:3121) [ 1438.149958][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1438.149961][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1438.149964][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1438.149967][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1438.149971][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1438.149977][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1438.149981][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1438.149988][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1438.149991][ C3] RIP: 0033:0x7f439756d93b [ 1438.149996][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1438.149999][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1438.150002][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1438.150004][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1438.150006][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1438.150008][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1438.150009][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1440.656144][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1440.656155][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1440.656159][ C0] softirqs last disabled at (0): 0x0 | [ 1440.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 1440.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1440.656174][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1440.656181][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1440.656184][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1440.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1440.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1440.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1440.656193][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1440.656195][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1440.656197][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1440.656200][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1440.656203][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1440.656205][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1440.656207][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1440.656209][ C0] PKRU: 55555554 [ 1440.656210][ C0] Call Trace: [ 1440.656215][ C0] [ 1440.656219][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1440.656223][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1440.656229][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1440.656232][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1440.656243][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1440.656252][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1440.656255][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1440.656258][ C0] ? xa_store (lib/xarray.c:1734) [ 1440.656264][ C0] xa_store (lib/xarray.c:1734) [ 1440.656271][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1440.656277][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1440.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1440.656287][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1440.656290][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1440.656296][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1440.656300][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1440.656307][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1440.656311][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1440.656316][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1440.656321][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1440.656326][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1440.656338][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1440.656342][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1440.656348][ C0] ksys_unshare (kernel/fork.c:3121) [ 1440.656355][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1440.656359][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1440.656363][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1440.656366][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1440.656369][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1440.656375][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1440.656380][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1440.656386][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1440.656392][ C0] RIP: 0033:0x7f439756d93b [ 1440.656401][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1440.656403][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1440.656407][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1440.656409][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1440.656411][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1440.656413][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1440.656414][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1444.669144][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1444.669154][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1444.669158][ C2] softirqs last disabled at (0): 0x0 | [ 1444.669172][ C2] Tainted: [L]=SOFTLOCKUP [ 1444.669173][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1444.669176][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1444.669186][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1444.669190][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1444.669193][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1444.669196][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1444.669198][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1444.669200][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1444.669209][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1444.669211][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1444.669214][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1444.669219][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1444.669221][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1444.669223][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1444.669225][ C2] PKRU: 55555554 [ 1444.669226][ C2] Call Trace: [ 1444.669231][ C2] [ 1444.669236][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1444.669240][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1444.669246][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1444.669251][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1444.669259][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1444.669263][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1444.669266][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1444.669269][ C2] ? xa_store (lib/xarray.c:1734) [ 1444.669276][ C2] xa_store (lib/xarray.c:1734) [ 1444.669281][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1444.669288][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1444.669293][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1444.669296][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1444.669299][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1444.669306][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1444.669310][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1444.669318][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1444.669322][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1444.669327][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1444.669335][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1444.669340][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1444.669349][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1444.669353][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1444.669359][ C2] ksys_unshare (kernel/fork.c:3121) [ 1444.669365][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1444.669369][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1444.669374][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1444.669377][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1444.669381][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1444.669388][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1444.669392][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1444.669398][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1444.669404][ C2] RIP: 0033:0x7f439756d93b [ 1444.669409][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1444.669412][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1444.669416][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1444.669418][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1444.669422][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1444.669424][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1444.669426][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1464.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1464.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1464.669154][ C1] softirqs last disabled at (0): 0x0 | [ 1464.669166][ C1] Tainted: [L]=SOFTLOCKUP [ 1464.669168][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1464.669170][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1464.669178][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1464.669181][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1464.669184][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1464.669187][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1464.669188][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1464.669191][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1464.669193][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1464.669195][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1464.669197][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1464.669202][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1464.669204][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1464.669206][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1464.669208][ C1] PKRU: 55555554 [ 1464.669209][ C1] Call Trace: [ 1464.669213][ C1] [ 1464.669217][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1464.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1464.669226][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1464.669230][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1464.669238][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1464.669242][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1464.669245][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1464.669248][ C1] ? xa_store (lib/xarray.c:1734) [ 1464.669254][ C1] xa_store (lib/xarray.c:1734) [ 1464.669259][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1464.669264][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1464.669269][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1464.669273][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1464.669275][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.669281][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.669284][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1464.669292][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1464.669310][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1464.669315][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1464.669322][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1464.669328][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1464.669336][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1464.669340][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1464.669346][ C1] ksys_unshare (kernel/fork.c:3121) [ 1464.669351][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1464.669355][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1464.669359][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1464.669362][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1464.669366][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1464.669372][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1464.669376][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1464.669381][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1464.669385][ C1] RIP: 0033:0x7f439756d93b [ 1464.669391][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1464.669394][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1464.669397][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1464.669399][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1464.669401][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1464.669403][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1464.669405][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1464.670129][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1464.670135][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1464.670139][ C3] softirqs last disabled at (0): 0x0 | [ 1464.670149][ C3] Tainted: [L]=SOFTLOCKUP [ 1464.670150][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1464.670152][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1464.670158][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1464.670161][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1464.670164][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1464.670166][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1464.670168][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1464.670170][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1464.670172][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1464.670174][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1464.670176][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1464.670180][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1464.670182][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1464.670190][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1464.670192][ C3] PKRU: 55555554 [ 1464.670193][ C3] Call Trace: [ 1464.670197][ C3] [ 1464.670198][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1464.670206][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1464.670211][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1464.670215][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1464.670220][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1464.670224][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1464.670227][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1464.670231][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1464.670235][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1464.670238][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1464.670241][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1464.670244][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1464.670247][ C3] ? xas_alloc (lib/xarray.c:378) [ 1464.670252][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1464.670256][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1464.670259][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1464.670262][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1464.670268][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1464.670274][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1464.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670284][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1464.670289][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1464.670293][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670297][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1464.670300][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1464.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1464.670307][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1464.670309][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1464.670315][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1464.670318][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1464.670321][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1464.670326][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1464.670329][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1464.670333][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1464.670335][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1464.670339][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670342][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1464.670346][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1464.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1464.670354][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1464.670362][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1464.670366][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670370][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1464.670376][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1464.670381][ C3] handle_softirqs (kernel/softirq.c:579) [ 1464.670387][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1464.670390][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1464.670394][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1464.670398][ C3] [ 1464.670399][ C3] [ 1464.670401][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1464.670405][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1464.670408][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1464.670411][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1464.670415][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1464.670417][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1464.670419][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1464.670420][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1464.670422][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1464.670426][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1464.670432][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1464.670438][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1464.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 1464.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 1464.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1464.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 1464.670456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1464.670461][ C3] xas_alloc (lib/xarray.c:378) [ 1464.670466][ C3] xas_create (lib/xarray.c:685) [ 1464.670472][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1464.670477][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1464.670481][ C3] __xa_store (lib/xarray.c:1703) [ 1464.670485][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1464.670489][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1464.670492][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1464.670495][ C3] ? xa_store (lib/xarray.c:1734) [ 1464.670500][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1464.670504][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1464.670507][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1464.670512][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1464.670515][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1464.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670522][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1464.670525][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1464.670530][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1464.670534][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1464.670538][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1464.670542][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1464.670547][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1464.670556][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1464.670559][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1464.670564][ C3] ksys_unshare (kernel/fork.c:3121) [ 1464.670569][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1464.670572][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1464.670576][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1464.670579][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1464.670582][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1464.670588][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1464.670592][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1464.670597][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1464.670600][ C3] RIP: 0033:0x7f439756d93b [ 1464.670603][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1464.670606][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1464.670609][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1464.670611][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1464.670613][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1464.670615][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1464.670617][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1468.656148][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1468.656159][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1468.656163][ C0] softirqs last disabled at (0): 0x0 | [ 1468.656178][ C0] Tainted: [L]=SOFTLOCKUP [ 1468.656179][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1468.656182][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1468.656193][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1468.656196][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1468.656199][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1468.656202][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1468.656220][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1468.656222][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1468.656224][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1468.656226][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1468.656229][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1468.656234][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1468.656236][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1468.656238][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1468.656240][ C0] PKRU: 55555554 [ 1468.656241][ C0] Call Trace: [ 1468.656247][ C0] [ 1468.656252][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1468.656260][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1468.656266][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1468.656271][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1468.656279][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1468.656283][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1468.656286][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1468.656290][ C0] ? xa_store (lib/xarray.c:1734) [ 1468.656297][ C0] xa_store (lib/xarray.c:1734) [ 1468.656302][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1468.656309][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1468.656315][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1468.656318][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1468.656321][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1468.656329][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1468.656332][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1468.656340][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1468.656344][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1468.656350][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1468.656358][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1468.656364][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1468.656373][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1468.656377][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1468.656384][ C0] ksys_unshare (kernel/fork.c:3121) [ 1468.656390][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1468.656393][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1468.656398][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1468.656402][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1468.656406][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1468.656413][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1468.656418][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1468.656424][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1468.656429][ C0] RIP: 0033:0x7f439756d93b [ 1468.656435][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1468.656438][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1468.656442][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1468.656444][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1468.656446][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1468.656448][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1468.656450][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1472.669143][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1472.669153][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1472.669167][ C2] softirqs last disabled at (0): 0x0 | [ 1472.669182][ C2] Tainted: [L]=SOFTLOCKUP [ 1472.669184][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1472.669187][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1472.669197][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1472.669201][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1472.669204][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1472.669207][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1472.669209][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1472.669211][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1472.669213][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1472.669215][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1472.669218][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1472.669222][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1472.669224][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1472.669226][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1472.669227][ C2] PKRU: 55555554 [ 1472.669229][ C2] Call Trace: [ 1472.669233][ C2] [ 1472.669238][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1472.669242][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1472.669248][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1472.669252][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1472.669260][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1472.669265][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1472.669268][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1472.669271][ C2] ? xa_store (lib/xarray.c:1734) [ 1472.669278][ C2] xa_store (lib/xarray.c:1734) [ 1472.669283][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1472.669289][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1472.669295][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1472.669297][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1472.669301][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1472.669308][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1472.669311][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1472.669319][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1472.669323][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1472.669328][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1472.669335][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1472.669340][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1472.669350][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1472.669354][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1472.669360][ C2] ksys_unshare (kernel/fork.c:3121) [ 1472.669365][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1472.669369][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1472.669374][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1472.669381][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1472.669384][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1472.669391][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1472.669396][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1472.669402][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1472.669407][ C2] RIP: 0033:0x7f439756d93b [ 1472.669412][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1472.669415][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1472.669418][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1472.669420][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1472.669422][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1472.669424][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1472.669426][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1492.669145][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1492.669155][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1492.669158][ C1] softirqs last disabled at (0): 0x0 | [ 1492.669172][ C1] Tainted: [L]=SOFTLOCKUP [ 1492.669174][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1492.669177][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1492.669187][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1492.669190][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1492.669194][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1492.669196][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1492.669198][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1492.669200][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1492.669203][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1492.669205][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1492.669208][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1492.669212][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1492.669214][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1492.669216][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1492.669218][ C1] PKRU: 55555554 [ 1492.669219][ C1] Call Trace: [ 1492.669224][ C1] [ 1492.669229][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1492.669234][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1492.669240][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1492.669244][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1492.669253][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1492.669257][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1492.669269][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1492.669273][ C1] ? xa_store (lib/xarray.c:1734) [ 1492.669280][ C1] xa_store (lib/xarray.c:1734) [ 1492.669285][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1492.669292][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1492.669297][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1492.669301][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1492.669304][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.669311][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.669314][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1492.669322][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1492.669326][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1492.669332][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1492.669339][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1492.669344][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1492.669354][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1492.669358][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1492.669365][ C1] ksys_unshare (kernel/fork.c:3121) [ 1492.669370][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1492.669374][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1492.669382][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1492.669385][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1492.669388][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1492.669396][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1492.669400][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1492.669406][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1492.669412][ C1] RIP: 0033:0x7f439756d93b [ 1492.669418][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1492.669421][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1492.669425][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1492.669427][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1492.669429][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1492.669431][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1492.669433][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1492.670137][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1492.670145][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1492.670149][ C3] softirqs last disabled at (0): 0x0 | [ 1492.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 1492.670163][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1492.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1492.670173][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1492.670184][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1492.670187][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1492.670190][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1492.670191][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1492.670193][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1492.670195][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1492.670198][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1492.670200][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1492.670204][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1492.670206][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1492.670207][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1492.670209][ C3] PKRU: 55555554 [ 1492.670210][ C3] Call Trace: [ 1492.670215][ C3] [ 1492.670217][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1492.670222][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1492.670227][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1492.670231][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1492.670236][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1492.670240][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1492.670243][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1492.670248][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1492.670251][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1492.670254][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1492.670257][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1492.670260][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1492.670263][ C3] ? xas_alloc (lib/xarray.c:378) [ 1492.670268][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1492.670273][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1492.670276][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1492.670280][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1492.670285][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1492.670289][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1492.670295][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670300][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1492.670306][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1492.670311][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670315][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1492.670318][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1492.670321][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1492.670325][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1492.670327][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1492.670333][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1492.670336][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1492.670339][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1492.670343][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1492.670348][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1492.670354][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1492.670357][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1492.670360][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670364][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1492.670368][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1492.670373][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1492.670376][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1492.670381][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1492.670385][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670389][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1492.670394][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1492.670398][ C3] handle_softirqs (kernel/softirq.c:579) [ 1492.670404][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1492.670407][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1492.670411][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1492.670415][ C3] [ 1492.670416][ C3] [ 1492.670418][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1492.670423][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1492.670426][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1492.670429][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1492.670431][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1492.670433][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1492.670436][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1492.670437][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1492.670439][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1492.670443][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1492.670449][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1492.670454][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1492.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 1492.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 1492.670466][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1492.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 1492.670473][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1492.670478][ C3] xas_alloc (lib/xarray.c:378) [ 1492.670483][ C3] xas_create (lib/xarray.c:685) [ 1492.670489][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1492.670494][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1492.670497][ C3] __xa_store (lib/xarray.c:1703) [ 1492.670501][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1492.670506][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1492.670509][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1492.670512][ C3] ? xa_store (lib/xarray.c:1734) [ 1492.670516][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1492.670521][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1492.670524][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1492.670531][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1492.670534][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1492.670537][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670541][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1492.670544][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1492.670549][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1492.670553][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1492.670558][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1492.670562][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1492.670566][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1492.670575][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1492.670579][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1492.670585][ C3] ksys_unshare (kernel/fork.c:3121) [ 1492.670589][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1492.670593][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1492.670597][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1492.670599][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1492.670603][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1492.670609][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1492.670613][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1492.670618][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1492.670622][ C3] RIP: 0033:0x7f439756d93b [ 1492.670625][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1492.670628][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1492.670631][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1492.670634][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1492.670636][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1492.670638][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1492.670639][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1496.656141][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1496.656151][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1496.656155][ C0] softirqs last disabled at (0): 0x0 | [ 1496.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 1496.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1496.656174][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1496.656185][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1496.656189][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1496.656192][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1496.656194][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1496.656197][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1496.656199][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1496.656212][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1496.656215][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1496.656218][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1496.656224][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1496.656226][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1496.656228][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1496.656230][ C0] PKRU: 55555554 [ 1496.656231][ C0] Call Trace: [ 1496.656236][ C0] [ 1496.656240][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1496.656245][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1496.656251][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1496.656255][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1496.656264][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1496.656268][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1496.656271][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1496.656274][ C0] ? xa_store (lib/xarray.c:1734) [ 1496.656281][ C0] xa_store (lib/xarray.c:1734) [ 1496.656286][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1496.656292][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1496.656297][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1496.656300][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1496.656303][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1496.656310][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1496.656314][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1496.656322][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1496.656326][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1496.656331][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1496.656339][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1496.656343][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1496.656353][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1496.656356][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1496.656363][ C0] ksys_unshare (kernel/fork.c:3121) [ 1496.656369][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1496.656372][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1496.656377][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1496.656381][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1496.656384][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1496.656392][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1496.656396][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1496.656402][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1496.656407][ C0] RIP: 0033:0x7f439756d93b [ 1496.656413][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1496.656416][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1496.656419][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1496.656422][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1496.656426][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1496.656428][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1496.656430][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1500.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1500.669151][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1500.669154][ C2] softirqs last disabled at (0): 0x0 | [ 1500.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 1500.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1500.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1500.669184][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1500.669187][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1500.669191][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1500.669193][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1500.669195][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1500.669198][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1500.669200][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1500.669202][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1500.669204][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1500.669208][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1500.669210][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1500.669212][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1500.669213][ C2] PKRU: 55555554 [ 1500.669215][ C2] Call Trace: [ 1500.669220][ C2] [ 1500.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1500.669229][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1500.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1500.669239][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1500.669247][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1500.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1500.669254][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1500.669257][ C2] ? xa_store (lib/xarray.c:1734) [ 1500.669264][ C2] xa_store (lib/xarray.c:1734) [ 1500.669269][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1500.669275][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1500.669280][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1500.669283][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1500.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1500.669294][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1500.669297][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1500.669305][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1500.669316][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1500.669321][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1500.669329][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1500.669334][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1500.669343][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1500.669348][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1500.669355][ C2] ksys_unshare (kernel/fork.c:3121) [ 1500.669360][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1500.669364][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1500.669369][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1500.669372][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1500.669376][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1500.669383][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1500.669387][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1500.669393][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1500.669399][ C2] RIP: 0033:0x7f439756d93b [ 1500.669404][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1500.669407][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1500.669410][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1500.669412][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1500.669414][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1500.669416][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1500.669418][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1516.161785][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1516.162086][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1516.162360][ C1] NMI backtrace for cpu 1 | [ 1516.162380][ C1] Tainted: [L]=SOFTLOCKUP [ 1516.162382][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1516.162385][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1516.162398][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1516.162401][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1516.162412][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1516.162414][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1516.162416][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1516.162418][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1516.162421][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1516.162424][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1516.162426][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1516.162432][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1516.162434][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1516.162436][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1516.162437][ C1] PKRU: 55555554 [ 1516.162439][ C1] Call Trace: [ 1516.162443][ C1] [ 1516.162448][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1516.162453][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1516.162459][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1516.162463][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1516.162471][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1516.162475][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1516.162480][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1516.162483][ C1] ? xa_store (lib/xarray.c:1734) [ 1516.162490][ C1] xa_store (lib/xarray.c:1734) [ 1516.162495][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1516.162501][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1516.162506][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1516.162509][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1516.162512][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.162519][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.162523][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1516.162531][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1516.162535][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1516.162539][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1516.162548][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1516.162552][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1516.162563][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1516.162567][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1516.162574][ C1] ksys_unshare (kernel/fork.c:3121) [ 1516.162581][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1516.162585][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1516.162590][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1516.162593][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1516.162597][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1516.162604][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1516.162608][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1516.162614][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1516.162619][ C1] RIP: 0033:0x7f439756d93b [ 1516.162625][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1516.162628][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1516.162631][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1516.162633][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1516.162635][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1516.162637][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1516.162639][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1516.162637][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1516.162639][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1516.162645][ C1] | [ 1516.163350][ C3] Tainted: [L]=SOFTLOCKUP [ 1516.163352][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1516.163354][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:177 mm/kasan/generic.c:189) [ 1516.163360][ C3] Code: ff ff ff ff ff ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff <48> 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff All code ======== 0: ff (bad) 1: ff (bad) 2: ff (bad) 3: ff (bad) 4: ff (bad) 5: ff (bad) 6: fe 48 39 decb 0x39(%rax) 9: c7 (bad) a: 77 23 ja 0x2f c: 44 89 c2 mov %r8d,%edx f: e8 b7 e7 ff ff call 0xffffffffffffe7cb 14: 83 f0 01 xor $0x1,%eax 17: 5b pop %rbx 18: 5d pop %rbp 19: 41 5c pop %r12 1b: c3 ret 1c: cc int3 1d: cc int3 1e: cc int3 1f: cc int3 20: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 27: 7f ff ff 2a:* 48 39 c7 cmp %rax,%rdi <-- trapping instruction 2d: 76 dd jbe 0xc 2f: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 34: 48 89 fd mov %rdi,%rbp 37: 48 rex.W 38: b8 00 00 00 00 mov $0x0,%eax 3d: 00 fc add %bh,%ah 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 48 39 c7 cmp %rax,%rdi 3: 76 dd jbe 0xffffffffffffffe2 5: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 a: 48 89 fd mov %rdi,%rbp d: 48 rex.W e: b8 00 00 00 00 mov $0x0,%eax 13: 00 fc add %bh,%ah 15: ff .byte 0xff [ 1516.163364][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000282 [ 1516.163368][ C3] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1516.163370][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1516.163372][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1516.163375][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1516.163376][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1516.163381][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1516.163384][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1516.163388][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1516.163390][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1516.163392][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1516.163394][ C3] PKRU: 55555554 [ 1516.163395][ C3] Call Trace: [ 1516.163397][ C3] [ 1516.163400][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1516.163405][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1516.163409][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1516.163414][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1516.163417][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1516.163420][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1516.163425][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1516.163428][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1516.163432][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1516.163435][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1516.163439][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1516.163441][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1516.163444][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1516.163447][ C3] ? xas_alloc (lib/xarray.c:378) [ 1516.163452][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1516.163455][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1516.163459][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1516.163462][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1516.163467][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1516.163471][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1516.163476][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163480][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1516.163486][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1516.163491][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163494][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1516.163497][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1516.163501][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1516.163505][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1516.163507][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1516.163514][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1516.163517][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1516.163520][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1516.163525][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1516.163530][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1516.163536][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1516.163539][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1516.163545][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163549][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1516.163553][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1516.163560][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1516.163563][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1516.163568][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1516.163572][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163576][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1516.163581][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1516.163586][ C3] handle_softirqs (kernel/softirq.c:579) [ 1516.163591][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1516.163595][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1516.163598][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1516.163602][ C3] [ 1516.163603][ C3] [ 1516.163604][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1516.163609][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1516.163612][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1516.163615][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1516.163618][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1516.163620][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1516.163621][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1516.163623][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1516.163625][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1516.163629][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1516.163635][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1516.163640][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1516.163644][ C3] ? xas_alloc (lib/xarray.c:378) [ 1516.163648][ C3] ? xas_alloc (lib/xarray.c:378) [ 1516.163651][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1516.163656][ C3] ? xas_alloc (lib/xarray.c:378) [ 1516.163658][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1516.163663][ C3] xas_alloc (lib/xarray.c:378) [ 1516.163668][ C3] xas_create (lib/xarray.c:685) [ 1516.163674][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1516.163678][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1516.163682][ C3] __xa_store (lib/xarray.c:1703) [ 1516.163686][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1516.163691][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1516.163694][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1516.163697][ C3] ? xa_store (lib/xarray.c:1734) [ 1516.163702][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1516.163706][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1516.163709][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1516.163714][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1516.163717][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1516.163720][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163724][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1516.163727][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1516.163734][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1516.163738][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1516.163743][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1516.163747][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1516.163751][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1516.163759][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1516.163763][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1516.163768][ C3] ksys_unshare (kernel/fork.c:3121) [ 1516.163773][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1516.163776][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1516.163780][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1516.163783][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1516.163786][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1516.163792][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1516.163796][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1516.163801][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1516.163805][ C3] RIP: 0033:0x7f439756d93b [ 1516.163809][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1516.163812][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1516.163815][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1516.163819][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1516.163820][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1516.163822][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1516.163824][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1524.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1524.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1524.656147][ C0] softirqs last disabled at (0): 0x0 | [ 1524.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 1524.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1524.656163][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1524.656170][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1524.656174][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1524.656177][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1524.656179][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1524.656181][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1524.656183][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1524.656185][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1524.656187][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1524.656190][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1524.656193][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1524.656195][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1524.656207][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1524.656208][ C0] PKRU: 55555554 [ 1524.656210][ C0] Call Trace: [ 1524.656214][ C0] [ 1524.656218][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1524.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1524.656227][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1524.656232][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1524.656239][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1524.656243][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1524.656246][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1524.656249][ C0] ? xa_store (lib/xarray.c:1734) [ 1524.656255][ C0] xa_store (lib/xarray.c:1734) [ 1524.656259][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1524.656264][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1524.656270][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1524.656273][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1524.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1524.656282][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1524.656285][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1524.656291][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1524.656296][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1524.656300][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1524.656306][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1524.656310][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1524.656318][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1524.656322][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1524.656327][ C0] ksys_unshare (kernel/fork.c:3121) [ 1524.656332][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1524.656336][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1524.656340][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1524.656343][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1524.656346][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1524.656353][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1524.656357][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1524.656362][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1524.656366][ C0] RIP: 0033:0x7f439756d93b [ 1524.656371][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1524.656374][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1524.656377][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1524.656379][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1524.656381][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1524.656383][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1524.656384][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1528.669151][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1528.669161][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1528.669165][ C2] softirqs last disabled at (0): 0x0 | [ 1528.669179][ C2] Tainted: [L]=SOFTLOCKUP [ 1528.669181][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1528.669184][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1528.669195][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1528.669199][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1528.669202][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1528.669205][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1528.669207][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1528.669209][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1528.669211][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1528.669213][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1528.669216][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1528.669220][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1528.669222][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1528.669223][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1528.669225][ C2] PKRU: 55555554 [ 1528.669226][ C2] Call Trace: [ 1528.669232][ C2] [ 1528.669237][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1528.669241][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1528.669247][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1528.669251][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1528.669259][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1528.669264][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1528.669267][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1528.669270][ C2] ? xa_store (lib/xarray.c:1734) [ 1528.669277][ C2] xa_store (lib/xarray.c:1734) [ 1528.669282][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1528.669289][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1528.669295][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1528.669297][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1528.669300][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1528.669307][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1528.669311][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1528.669319][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1528.669323][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1528.669328][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1528.669336][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1528.669341][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1528.669350][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1528.669357][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1528.669363][ C2] ksys_unshare (kernel/fork.c:3121) [ 1528.669369][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1528.669372][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1528.669377][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1528.669381][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1528.669384][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1528.669391][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1528.669396][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1528.669402][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1528.669407][ C2] RIP: 0033:0x7f439756d93b [ 1528.669413][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1528.669416][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1528.669420][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1528.669422][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1528.669424][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1528.669426][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1528.669428][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1540.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1540.669148][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1540.669151][ C1] softirqs last disabled at (0): 0x0 | [ 1540.669163][ C1] Tainted: [L]=SOFTLOCKUP [ 1540.669164][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1540.669167][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:171 mm/kasan/generic.c:189) [ 1540.669172][ C1] Code: 00 00 e9 2f 4d 36 02 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 <48> 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 All code ======== 0: 00 00 add %al,(%rax) 2: e9 2f 4d 36 02 jmp 0x2364d36 7: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 00 12: 0f 1f 40 00 nopl 0x0(%rax) 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 66 0f 1f 00 nopw (%rax) 2a:* 48 85 f6 test %rsi,%rsi <-- trapping instruction 2d: 0f 84 5e 01 00 00 je 0x191 33: 48 89 f8 mov %rdi,%rax 36: 41 54 push %r12 38: 44 0f b6 c2 movzbl %dl,%r8d 3c: 48 01 f0 add %rsi,%rax 3f: 55 push %rbp Code starting with the faulting instruction =========================================== 0: 48 85 f6 test %rsi,%rsi 3: 0f 84 5e 01 00 00 je 0x167 9: 48 89 f8 mov %rdi,%rax c: 41 54 push %r12 e: 44 0f b6 c2 movzbl %dl,%r8d 12: 48 01 f0 add %rsi,%rax 15: 55 push %rbp [ 1540.669176][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000246 [ 1540.669179][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1540.669181][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1540.669183][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1540.669185][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1540.669187][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1540.669189][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1540.669192][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1540.669196][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1540.669198][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1540.669200][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1540.669202][ C1] PKRU: 55555554 [ 1540.669203][ C1] Call Trace: [ 1540.669207][ C1] [ 1540.669209][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1540.669219][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1540.669223][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1540.669228][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1540.669232][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1540.669245][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1540.669249][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1540.669251][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1540.669255][ C1] ? xa_store (lib/xarray.c:1734) [ 1540.669261][ C1] xa_store (lib/xarray.c:1734) [ 1540.669266][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1540.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1540.669276][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1540.669279][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1540.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.669288][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.669292][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1540.669299][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1540.669302][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1540.669307][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1540.669313][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1540.669318][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1540.669326][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1540.669330][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1540.669335][ C1] ksys_unshare (kernel/fork.c:3121) [ 1540.669341][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1540.669344][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1540.669348][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1540.669351][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1540.669355][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1540.669361][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1540.669365][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1540.669370][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1540.669374][ C1] RIP: 0033:0x7f439756d93b [ 1540.669380][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1540.669382][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1540.669386][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1540.669388][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1540.669390][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1540.669391][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1540.669393][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1540.670128][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1540.670134][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1540.670138][ C3] softirqs last disabled at (0): 0x0 | [ 1540.670148][ C3] Tainted: [L]=SOFTLOCKUP [ 1540.670150][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1540.670152][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1540.670158][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1540.670161][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1540.670164][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1540.670166][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1540.670168][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1540.670170][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1540.670172][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1540.670174][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1540.670176][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1540.670180][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1540.670182][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1540.670184][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1540.670185][ C3] PKRU: 55555554 [ 1540.670187][ C3] Call Trace: [ 1540.670190][ C3] [ 1540.670192][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1540.670197][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1540.670202][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1540.670206][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1540.670210][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1540.670215][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1540.670218][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1540.670222][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1540.670225][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1540.670229][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1540.670231][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1540.670234][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1540.670237][ C3] ? xas_alloc (lib/xarray.c:378) [ 1540.670242][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1540.670246][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1540.670249][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1540.670253][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1540.670258][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1540.670262][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1540.670268][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670272][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1540.670277][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1540.670282][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670285][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1540.670288][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1540.670292][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1540.670295][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1540.670298][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1540.670304][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1540.670307][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1540.670310][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1540.670315][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1540.670318][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1540.670322][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1540.670325][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1540.670329][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670332][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1540.670336][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1540.670341][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1540.670344][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1540.670349][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1540.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670356][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1540.670361][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1540.670366][ C3] handle_softirqs (kernel/softirq.c:579) [ 1540.670371][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1540.670375][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1540.670378][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1540.670382][ C3] [ 1540.670383][ C3] [ 1540.670385][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1540.670389][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1540.670392][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1540.670395][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1540.670398][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1540.670401][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1540.670403][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1540.670405][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1540.670407][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1540.670411][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1540.670417][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1540.670423][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1540.670427][ C3] ? xas_alloc (lib/xarray.c:378) [ 1540.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 1540.670434][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1540.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 1540.670441][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1540.670446][ C3] xas_alloc (lib/xarray.c:378) [ 1540.670450][ C3] xas_create (lib/xarray.c:685) [ 1540.670456][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1540.670461][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1540.670464][ C3] __xa_store (lib/xarray.c:1703) [ 1540.670468][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1540.670473][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1540.670476][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1540.670479][ C3] ? xa_store (lib/xarray.c:1734) [ 1540.670484][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1540.670488][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1540.670492][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1540.670497][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1540.670500][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1540.670502][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670506][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1540.670510][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1540.670515][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1540.670519][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1540.670523][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1540.670527][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1540.670531][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1540.670539][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1540.670542][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1540.670547][ C3] ksys_unshare (kernel/fork.c:3121) [ 1540.670551][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1540.670555][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1540.670558][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1540.670561][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1540.670564][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1540.670570][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1540.670574][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1540.670578][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1540.670581][ C3] RIP: 0033:0x7f439756d93b [ 1540.670585][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1540.670588][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1540.670591][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1540.670593][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1540.670595][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1540.670597][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1540.670599][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1552.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1552.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1552.656151][ C0] softirqs last disabled at (0): 0x0 | [ 1552.656163][ C0] Tainted: [L]=SOFTLOCKUP [ 1552.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1552.656167][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1552.656176][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1552.656179][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1552.656182][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1552.656184][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1552.656186][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1552.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1552.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1552.656193][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1552.656195][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1552.656199][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1552.656201][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1552.656203][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1552.656204][ C0] PKRU: 55555554 [ 1552.656206][ C0] Call Trace: [ 1552.656210][ C0] [ 1552.656214][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1552.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1552.656223][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1552.656227][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1552.656234][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1552.656238][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1552.656241][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1552.656244][ C0] ? xa_store (lib/xarray.c:1734) [ 1552.656251][ C0] xa_store (lib/xarray.c:1734) [ 1552.656255][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1552.656261][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1552.656266][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1552.656269][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1552.656272][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1552.656279][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1552.656282][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1552.656289][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1552.656293][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1552.656298][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1552.656305][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1552.656309][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1552.656318][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1552.656321][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1552.656327][ C0] ksys_unshare (kernel/fork.c:3121) [ 1552.656332][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1552.656336][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1552.656341][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1552.656344][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1552.656347][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1552.656354][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1552.656358][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1552.656363][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1552.656368][ C0] RIP: 0033:0x7f439756d93b [ 1552.656373][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1552.656376][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1552.656379][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1552.656381][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1552.656384][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1552.656385][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1552.656387][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1556.669136][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1556.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1556.669147][ C2] softirqs last disabled at (0): 0x0 | [ 1556.669159][ C2] Tainted: [L]=SOFTLOCKUP [ 1556.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1556.669164][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1556.669171][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1556.669175][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1556.669177][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1556.669180][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1556.669182][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1556.669184][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1556.669186][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1556.669188][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1556.669190][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1556.669195][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1556.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1556.669199][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1556.669200][ C2] PKRU: 55555554 [ 1556.669202][ C2] Call Trace: [ 1556.669206][ C2] [ 1556.669210][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1556.669214][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1556.669219][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1556.669223][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1556.669229][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1556.669233][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1556.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1556.669239][ C2] ? xa_store (lib/xarray.c:1734) [ 1556.669245][ C2] xa_store (lib/xarray.c:1734) [ 1556.669250][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1556.669255][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1556.669260][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1556.669263][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1556.669266][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1556.669272][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1556.669275][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1556.669282][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1556.669286][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1556.669291][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1556.669297][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1556.669302][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1556.669310][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1556.669313][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1556.669319][ C2] ksys_unshare (kernel/fork.c:3121) [ 1556.669324][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1556.669328][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1556.669332][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1556.669335][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1556.669339][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1556.669345][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1556.669349][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1556.669354][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1556.669359][ C2] RIP: 0033:0x7f439756d93b [ 1556.669364][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1556.669367][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1556.669370][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1556.669372][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1556.669374][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1556.669376][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1556.669378][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1568.669137][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1568.669144][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1568.669148][ C1] softirqs last disabled at (0): 0x0 | [ 1568.669160][ C1] Tainted: [L]=SOFTLOCKUP [ 1568.669162][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1568.669164][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1568.669172][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1568.669175][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1568.669178][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1568.669181][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1568.669183][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1568.669185][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1568.669187][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1568.669189][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1568.669192][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1568.669196][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1568.669198][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1568.669200][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1568.669202][ C1] PKRU: 55555554 [ 1568.669203][ C1] Call Trace: [ 1568.669207][ C1] [ 1568.669211][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1568.669215][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1568.669220][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1568.669224][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1568.669231][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1568.669235][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1568.669238][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1568.669241][ C1] ? xa_store (lib/xarray.c:1734) [ 1568.669247][ C1] xa_store (lib/xarray.c:1734) [ 1568.669252][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1568.669257][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1568.669262][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1568.669265][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1568.669268][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.669274][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.669277][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1568.669284][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1568.669288][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1568.669293][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1568.669299][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1568.669304][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1568.669312][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1568.669316][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1568.669321][ C1] ksys_unshare (kernel/fork.c:3121) [ 1568.669326][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1568.669330][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1568.669334][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1568.669337][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1568.669341][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1568.669347][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1568.669351][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1568.669357][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1568.669361][ C1] RIP: 0033:0x7f439756d93b [ 1568.669365][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1568.669368][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1568.669371][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1568.669373][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1568.669375][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1568.669377][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1568.669378][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1568.670125][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1568.670131][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1568.670135][ C3] softirqs last disabled at (0): 0x0 | [ 1568.670145][ C3] Tainted: [L]=SOFTLOCKUP [ 1568.670147][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1568.670149][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1568.670155][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1568.670158][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1568.670160][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1568.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1568.670165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1568.670167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1568.670169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1568.670171][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1568.670173][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1568.670177][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1568.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1568.670181][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1568.670182][ C3] PKRU: 55555554 [ 1568.670183][ C3] Call Trace: [ 1568.670186][ C3] [ 1568.670188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1568.670193][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1568.670198][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1568.670201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1568.670206][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1568.670210][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1568.670213][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1568.670217][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1568.670221][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1568.670224][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1568.670227][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1568.670229][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1568.670232][ C3] ? xas_alloc (lib/xarray.c:378) [ 1568.670237][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1568.670241][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1568.670244][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1568.670247][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1568.670253][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1568.670257][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1568.670263][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670267][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1568.670273][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1568.670277][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670280][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1568.670284][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1568.670287][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1568.670290][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1568.670293][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1568.670298][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1568.670301][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1568.670304][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1568.670309][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1568.670312][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1568.670316][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1568.670319][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1568.670322][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670326][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1568.670330][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1568.670335][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1568.670338][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1568.670344][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1568.670348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670351][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1568.670356][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1568.670361][ C3] handle_softirqs (kernel/softirq.c:579) [ 1568.670367][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1568.670371][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1568.670374][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1568.670377][ C3] [ 1568.670378][ C3] [ 1568.670380][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1568.670384][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1568.670387][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1568.670390][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1568.670393][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1568.670395][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1568.670397][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1568.670399][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1568.670400][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1568.670405][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1568.670410][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1568.670416][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1568.670420][ C3] ? xas_alloc (lib/xarray.c:378) [ 1568.670424][ C3] ? xas_alloc (lib/xarray.c:378) [ 1568.670427][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1568.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 1568.670434][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1568.670439][ C3] xas_alloc (lib/xarray.c:378) [ 1568.670444][ C3] xas_create (lib/xarray.c:685) [ 1568.670450][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1568.670454][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1568.670458][ C3] __xa_store (lib/xarray.c:1703) [ 1568.670462][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1568.670467][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1568.670469][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1568.670472][ C3] ? xa_store (lib/xarray.c:1734) [ 1568.670477][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1568.670481][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1568.670484][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1568.670489][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1568.670492][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1568.670495][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670499][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1568.670502][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1568.670507][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1568.670511][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1568.670516][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1568.670519][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1568.670524][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1568.670531][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1568.670535][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1568.670539][ C3] ksys_unshare (kernel/fork.c:3121) [ 1568.670544][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1568.670548][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1568.670551][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1568.670554][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1568.670558][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1568.670564][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1568.670567][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1568.670573][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1568.670576][ C3] RIP: 0033:0x7f439756d93b [ 1568.670580][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1568.670582][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1568.670586][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1568.670588][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1568.670590][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1568.670592][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1568.670594][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1580.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1580.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1580.656148][ C0] softirqs last disabled at (0): 0x0 | [ 1580.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 1580.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1580.656164][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1580.656171][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1580.656175][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1580.656178][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1580.656180][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1580.656182][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1580.656184][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1580.656187][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1580.656189][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1580.656191][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1580.656196][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1580.656198][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1580.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1580.656201][ C0] PKRU: 55555554 [ 1580.656202][ C0] Call Trace: [ 1580.656206][ C0] [ 1580.656210][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1580.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1580.656219][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1580.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1580.656230][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1580.656234][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1580.656236][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1580.656240][ C0] ? xa_store (lib/xarray.c:1734) [ 1580.656246][ C0] xa_store (lib/xarray.c:1734) [ 1580.656250][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1580.656256][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1580.656261][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1580.656264][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1580.656267][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1580.656272][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1580.656276][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1580.656283][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1580.656287][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1580.656291][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1580.656298][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1580.656302][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1580.656311][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1580.656315][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1580.656321][ C0] ksys_unshare (kernel/fork.c:3121) [ 1580.656326][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1580.656329][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1580.656333][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1580.656337][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1580.656341][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1580.656347][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1580.656351][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1580.656356][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1580.656360][ C0] RIP: 0033:0x7f439756d93b [ 1580.656366][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1580.656368][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1580.656372][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1580.656374][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1580.656375][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1580.656377][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1580.656379][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1584.669145][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1584.669154][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1584.669158][ C2] softirqs last disabled at (0): 0x0 | [ 1584.669173][ C2] Tainted: [L]=SOFTLOCKUP [ 1584.669175][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1584.669178][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1584.669189][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1584.669192][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1584.669195][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1584.669198][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1584.669200][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1584.669202][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1584.669204][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1584.669206][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1584.669209][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1584.669214][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1584.669216][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1584.669218][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1584.669220][ C2] PKRU: 55555554 [ 1584.669221][ C2] Call Trace: [ 1584.669227][ C2] [ 1584.669232][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1584.669237][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1584.669243][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1584.669247][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1584.669256][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1584.669260][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1584.669263][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1584.669266][ C2] ? xa_store (lib/xarray.c:1734) [ 1584.669273][ C2] xa_store (lib/xarray.c:1734) [ 1584.669279][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1584.669286][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1584.669291][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1584.669294][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1584.669298][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1584.669305][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1584.669308][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1584.669316][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1584.669320][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1584.669326][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1584.669333][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1584.669338][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1584.669348][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1584.669352][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1584.669359][ C2] ksys_unshare (kernel/fork.c:3121) [ 1584.669364][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1584.669368][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1584.669373][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1584.669376][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1584.669380][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1584.669387][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1584.669392][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1584.669397][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1584.669402][ C2] RIP: 0033:0x7f439756d93b [ 1584.669409][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1584.669411][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1584.669415][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1584.669417][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1584.669420][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1584.669421][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1584.669423][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1594.174709][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1594.175005][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1594.175270][ C1] NMI backtrace for cpu 1 | [ 1594.175285][ C1] Tainted: [L]=SOFTLOCKUP [ 1594.175292][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1594.175295][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1594.175303][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1594.175306][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1594.175310][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1594.175312][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1594.175314][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1594.175317][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1594.175319][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1594.175321][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1594.175323][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1594.175328][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1594.175330][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1594.175332][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1594.175334][ C1] PKRU: 55555554 [ 1594.175335][ C1] Call Trace: [ 1594.175338][ C1] [ 1594.175341][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1594.175345][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1594.175350][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1594.175353][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1594.175361][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1594.175365][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1594.175368][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1594.175371][ C1] ? xa_store (lib/xarray.c:1734) [ 1594.175377][ C1] xa_store (lib/xarray.c:1734) [ 1594.175381][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1594.175387][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1594.175391][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1594.175394][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1594.175397][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.175402][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.175406][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1594.175412][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1594.175416][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1594.175423][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1594.175428][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1594.175433][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1594.175441][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1594.175444][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1594.175450][ C1] ksys_unshare (kernel/fork.c:3121) [ 1594.175456][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1594.175459][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1594.175463][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1594.175466][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1594.175470][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1594.175476][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1594.175480][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1594.175486][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1594.175490][ C1] RIP: 0033:0x7f439756d93b [ 1594.175496][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1594.175499][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1594.175502][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1594.175504][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1594.175506][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1594.175508][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1594.175510][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1594.175508][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1594.175510][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1594.175515][ C1] | [ 1594.176270][ C3] Tainted: [L]=SOFTLOCKUP [ 1594.176272][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1594.176274][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1594.176279][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1594.176282][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1594.176285][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1594.176290][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1594.176292][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1594.176294][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1594.176296][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1594.176298][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1594.176301][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1594.176304][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1594.176306][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1594.176308][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1594.176310][ C3] PKRU: 55555554 [ 1594.176311][ C3] Call Trace: [ 1594.176312][ C3] [ 1594.176314][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1594.176319][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1594.176323][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1594.176326][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1594.176330][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1594.176335][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1594.176338][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1594.176342][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1594.176345][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1594.176348][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1594.176350][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1594.176353][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1594.176356][ C3] ? xas_alloc (lib/xarray.c:378) [ 1594.176361][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1594.176364][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1594.176367][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1594.176370][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1594.176376][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1594.176379][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1594.176385][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176388][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1594.176394][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1594.176398][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176401][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1594.176404][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1594.176407][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1594.176411][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1594.176414][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1594.176419][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1594.176423][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1594.176426][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1594.176430][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1594.176433][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1594.176437][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1594.176439][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1594.176443][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176446][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1594.176451][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1594.176455][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1594.176458][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1594.176463][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1594.176467][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176470][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1594.176474][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1594.176478][ C3] handle_softirqs (kernel/softirq.c:579) [ 1594.176484][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1594.176488][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1594.176491][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1594.176495][ C3] [ 1594.176496][ C3] [ 1594.176497][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1594.176501][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1594.176504][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1594.176507][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1594.176509][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1594.176511][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1594.176513][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1594.176515][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1594.176517][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1594.176521][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1594.176527][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1594.176532][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1594.176535][ C3] ? xas_alloc (lib/xarray.c:378) [ 1594.176540][ C3] ? xas_alloc (lib/xarray.c:378) [ 1594.176543][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1594.176547][ C3] ? xas_alloc (lib/xarray.c:378) [ 1594.176550][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1594.176554][ C3] xas_alloc (lib/xarray.c:378) [ 1594.176561][ C3] xas_create (lib/xarray.c:685) [ 1594.176567][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1594.176571][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1594.176575][ C3] __xa_store (lib/xarray.c:1703) [ 1594.176579][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1594.176584][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1594.176587][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1594.176590][ C3] ? xa_store (lib/xarray.c:1734) [ 1594.176595][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1594.176599][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1594.176602][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1594.176606][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1594.176609][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1594.176612][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176616][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1594.176619][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1594.176624][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1594.176628][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1594.176632][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1594.176636][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1594.176640][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1594.176647][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1594.176651][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1594.176655][ C3] ksys_unshare (kernel/fork.c:3121) [ 1594.176660][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1594.176664][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1594.176667][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1594.176670][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1594.176673][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1594.176679][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1594.176682][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1594.176687][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1594.176690][ C3] RIP: 0033:0x7f439756d93b [ 1594.176694][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1594.176697][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1594.176700][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1594.176702][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1594.176704][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1594.176706][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1594.176707][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1608.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1608.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1608.656151][ C0] softirqs last disabled at (0): 0x0 | [ 1608.656164][ C0] Tainted: [L]=SOFTLOCKUP [ 1608.656165][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1608.656168][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1608.656176][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1608.656180][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1608.656183][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1608.656185][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1608.656187][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1608.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1608.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1608.656194][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1608.656196][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1608.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1608.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1608.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1608.656219][ C0] PKRU: 55555554 [ 1608.656220][ C0] Call Trace: [ 1608.656225][ C0] [ 1608.656229][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1608.656234][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1608.656239][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1608.656243][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1608.656250][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1608.656254][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1608.656257][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1608.656260][ C0] ? xa_store (lib/xarray.c:1734) [ 1608.656267][ C0] xa_store (lib/xarray.c:1734) [ 1608.656272][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1608.656277][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1608.656282][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1608.656285][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1608.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1608.656294][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1608.656297][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1608.656304][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1608.656308][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1608.656313][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1608.656319][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1608.656324][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1608.656333][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1608.656337][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1608.656343][ C0] ksys_unshare (kernel/fork.c:3121) [ 1608.656349][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1608.656352][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1608.656356][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1608.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1608.656363][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1608.656370][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1608.656374][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1608.656379][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1608.656384][ C0] RIP: 0033:0x7f439756d93b [ 1608.656388][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1608.656391][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1608.656394][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1608.656396][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1608.656398][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1608.656400][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1608.656402][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1612.669133][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1612.669141][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1612.669144][ C2] softirqs last disabled at (0): 0x0 | [ 1612.669156][ C2] Tainted: [L]=SOFTLOCKUP [ 1612.669157][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1612.669160][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1612.669168][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1612.669171][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1612.669175][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1612.669177][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1612.669179][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1612.669181][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1612.669184][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1612.669186][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1612.669188][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1612.669192][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1612.669204][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1612.669205][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1612.669207][ C2] PKRU: 55555554 [ 1612.669208][ C2] Call Trace: [ 1612.669212][ C2] [ 1612.669216][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1612.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1612.669226][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1612.669230][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1612.669236][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1612.669240][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1612.669243][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1612.669246][ C2] ? xa_store (lib/xarray.c:1734) [ 1612.669252][ C2] xa_store (lib/xarray.c:1734) [ 1612.669257][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1612.669262][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1612.669267][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1612.669270][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1612.669273][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1612.669279][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1612.669283][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1612.669289][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1612.669293][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1612.669298][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1612.669304][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1612.669308][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1612.669317][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1612.669321][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1612.669326][ C2] ksys_unshare (kernel/fork.c:3121) [ 1612.669332][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1612.669335][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1612.669340][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1612.669343][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1612.669347][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1612.669353][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1612.669357][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1612.669362][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1612.669367][ C2] RIP: 0033:0x7f439756d93b [ 1612.669373][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1612.669375][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1612.669379][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1612.669381][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1612.669383][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1612.669385][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1612.669386][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1620.669135][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1620.669143][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1620.669146][ C1] softirqs last disabled at (0): 0x0 | [ 1620.669158][ C1] Tainted: [L]=SOFTLOCKUP [ 1620.669160][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1620.669162][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1620.669170][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1620.669173][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1620.669176][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1620.669179][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1620.669180][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1620.669182][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1620.669185][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1620.669187][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1620.669190][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1620.669203][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1620.669205][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1620.669207][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1620.669208][ C1] PKRU: 55555554 [ 1620.669210][ C1] Call Trace: [ 1620.669214][ C1] [ 1620.669218][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1620.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1620.669227][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1620.669231][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1620.669237][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1620.669241][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1620.669244][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1620.669247][ C1] ? xa_store (lib/xarray.c:1734) [ 1620.669253][ C1] xa_store (lib/xarray.c:1734) [ 1620.669258][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1620.669263][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1620.669268][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1620.669271][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1620.669274][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.669279][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.669283][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1620.669290][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1620.669294][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1620.669298][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1620.669305][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1620.669309][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1620.669318][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1620.669321][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1620.669327][ C1] ksys_unshare (kernel/fork.c:3121) [ 1620.669332][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1620.669335][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1620.669339][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1620.669342][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1620.669346][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1620.669352][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1620.669356][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1620.669361][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1620.669366][ C1] RIP: 0033:0x7f439756d93b [ 1620.669371][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1620.669374][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1620.669377][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1620.669379][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1620.669381][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1620.669383][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1620.669384][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1620.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1620.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1620.670137][ C3] softirqs last disabled at (0): 0x0 | [ 1620.670147][ C3] Tainted: [L]=SOFTLOCKUP [ 1620.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1620.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1620.670157][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1620.670160][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1620.670162][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1620.670164][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1620.670166][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1620.670168][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1620.670170][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1620.670177][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1620.670180][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1620.670183][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1620.670186][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1620.670187][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1620.670189][ C3] PKRU: 55555554 [ 1620.670191][ C3] Call Trace: [ 1620.670194][ C3] [ 1620.670195][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1620.670201][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1620.670205][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1620.670208][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1620.670213][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1620.670218][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1620.670221][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1620.670225][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1620.670229][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1620.670233][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1620.670235][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1620.670238][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1620.670241][ C3] ? xas_alloc (lib/xarray.c:378) [ 1620.670246][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1620.670250][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1620.670253][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1620.670256][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1620.670262][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1620.670266][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1620.670271][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670276][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1620.670281][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1620.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670289][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1620.670292][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1620.670295][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1620.670298][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1620.670302][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1620.670307][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1620.670310][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1620.670313][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1620.670317][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1620.670321][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1620.670325][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1620.670327][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1620.670330][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670334][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1620.670338][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1620.670343][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1620.670346][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1620.670351][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1620.670355][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670359][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1620.670364][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1620.670368][ C3] handle_softirqs (kernel/softirq.c:579) [ 1620.670374][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1620.670378][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1620.670381][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1620.670385][ C3] [ 1620.670386][ C3] [ 1620.670388][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1620.670392][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1620.670395][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1620.670398][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1620.670401][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1620.670404][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1620.670405][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1620.670407][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1620.670409][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1620.670414][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1620.670420][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1620.670426][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1620.670430][ C3] ? xas_alloc (lib/xarray.c:378) [ 1620.670434][ C3] ? xas_alloc (lib/xarray.c:378) [ 1620.670437][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1620.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 1620.670444][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1620.670449][ C3] xas_alloc (lib/xarray.c:378) [ 1620.670454][ C3] xas_create (lib/xarray.c:685) [ 1620.670460][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1620.670464][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1620.670468][ C3] __xa_store (lib/xarray.c:1703) [ 1620.670472][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1620.670477][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1620.670480][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1620.670485][ C3] ? xa_store (lib/xarray.c:1734) [ 1620.670490][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1620.670495][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1620.670498][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1620.670503][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1620.670505][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1620.670508][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670512][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1620.670516][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1620.670521][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1620.670525][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1620.670530][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1620.670534][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1620.670538][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1620.670546][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1620.670549][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1620.670554][ C3] ksys_unshare (kernel/fork.c:3121) [ 1620.670558][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1620.670562][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1620.670566][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1620.670568][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1620.670572][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1620.670578][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1620.670581][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1620.670586][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1620.670589][ C3] RIP: 0033:0x7f439756d93b [ 1620.670593][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1620.670596][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1620.670599][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1620.670601][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1620.670603][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1620.670605][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1620.670606][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1636.656135][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1636.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1636.656147][ C0] softirqs last disabled at (0): 0x0 | [ 1636.656159][ C0] Tainted: [L]=SOFTLOCKUP [ 1636.656161][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1636.656163][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1636.656171][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1636.656175][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1636.656178][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1636.656180][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1636.656182][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1636.656184][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1636.656187][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1636.656188][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1636.656191][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1636.656195][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1636.656197][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1636.656199][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1636.656201][ C0] PKRU: 55555554 [ 1636.656202][ C0] Call Trace: [ 1636.656206][ C0] [ 1636.656210][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1636.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1636.656219][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1636.656223][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1636.656240][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1636.656244][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1636.656247][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1636.656250][ C0] ? xa_store (lib/xarray.c:1734) [ 1636.656256][ C0] xa_store (lib/xarray.c:1734) [ 1636.656261][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1636.656266][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1636.656271][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1636.656274][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1636.656277][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1636.656283][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1636.656287][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1636.656294][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1636.656298][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1636.656303][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1636.656308][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1636.656313][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1636.656322][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1636.656326][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1636.656332][ C0] ksys_unshare (kernel/fork.c:3121) [ 1636.656338][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1636.656341][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1636.656346][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1636.656349][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1636.656353][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1636.656359][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1636.656363][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1636.656368][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1636.656373][ C0] RIP: 0033:0x7f439756d93b [ 1636.656377][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1636.656380][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1636.656383][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1636.656385][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1636.656387][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1636.656389][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1636.656391][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1640.669132][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1640.669140][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1640.669144][ C2] softirqs last disabled at (0): 0x0 | [ 1640.669156][ C2] Tainted: [L]=SOFTLOCKUP [ 1640.669157][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1640.669159][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1640.669167][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1640.669170][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1640.669173][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1640.669175][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1640.669177][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1640.669179][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1640.669181][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1640.669183][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1640.669186][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1640.669189][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1640.669192][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1640.669193][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1640.669195][ C2] PKRU: 55555554 [ 1640.669196][ C2] Call Trace: [ 1640.669200][ C2] [ 1640.669204][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1640.669208][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1640.669213][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1640.669217][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1640.669224][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1640.669228][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1640.669231][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1640.669234][ C2] ? xa_store (lib/xarray.c:1734) [ 1640.669241][ C2] xa_store (lib/xarray.c:1734) [ 1640.669245][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1640.669250][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1640.669256][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1640.669259][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1640.669261][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1640.669267][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1640.669271][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1640.669278][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1640.669282][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1640.669287][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1640.669293][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1640.669298][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1640.669306][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1640.669310][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1640.669316][ C2] ksys_unshare (kernel/fork.c:3121) [ 1640.669321][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1640.669324][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1640.669330][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1640.669333][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1640.669336][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1640.669342][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1640.669346][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1640.669352][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1640.669357][ C2] RIP: 0033:0x7f439756d93b [ 1640.669362][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1640.669364][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1640.669368][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1640.669370][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1640.669372][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1640.669374][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1640.669375][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1648.669168][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1648.669180][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1648.669185][ C1] softirqs last disabled at (0): 0x0 | [ 1648.669203][ C1] Tainted: [L]=SOFTLOCKUP [ 1648.669205][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1648.669209][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 1648.669218][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 1648.669223][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 1648.669227][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1648.669230][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1648.669233][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1648.669236][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1648.669239][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1648.669242][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1648.669245][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1648.669256][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1648.669259][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1648.669261][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1648.669264][ C1] PKRU: 55555554 [ 1648.669266][ C1] Call Trace: [ 1648.669272][ C1] [ 1648.669275][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1648.669294][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1648.669301][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1648.669310][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1648.669315][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1648.669324][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1648.669330][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1648.669334][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1648.669338][ C1] ? xa_store (lib/xarray.c:1734) [ 1648.669347][ C1] xa_store (lib/xarray.c:1734) [ 1648.669353][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1648.669361][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1648.669369][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1648.669373][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1648.669377][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.669385][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.669390][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1648.669400][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1648.669405][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1648.669412][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1648.669421][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1648.669427][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1648.669439][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1648.669467][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1648.669475][ C1] ksys_unshare (kernel/fork.c:3121) [ 1648.669482][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1648.669487][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1648.669493][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1648.669497][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1648.669502][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1648.669511][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1648.669516][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1648.669523][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1648.669530][ C1] RIP: 0033:0x7f439756d93b [ 1648.669538][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1648.669542][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1648.669546][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1648.669549][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1648.669552][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1648.669555][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1648.669557][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1648.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1648.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1648.670146][ C3] softirqs last disabled at (0): 0x0 | [ 1648.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 1648.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1648.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1648.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1648.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1648.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1648.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1648.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1648.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1648.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1648.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1648.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1648.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1648.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1648.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1648.670199][ C3] PKRU: 55555554 [ 1648.670200][ C3] Call Trace: [ 1648.670204][ C3] [ 1648.670206][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1648.670211][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1648.670227][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1648.670231][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1648.670236][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1648.670240][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1648.670244][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1648.670248][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1648.670252][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1648.670255][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1648.670257][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1648.670260][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1648.670263][ C3] ? xas_alloc (lib/xarray.c:378) [ 1648.670269][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1648.670273][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1648.670276][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1648.670280][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1648.670285][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1648.670289][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1648.670294][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670299][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1648.670305][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1648.670311][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1648.670317][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1648.670321][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1648.670324][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1648.670327][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1648.670333][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1648.670337][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1648.670339][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1648.670344][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1648.670349][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1648.670352][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1648.670355][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1648.670358][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670361][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1648.670366][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1648.670370][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1648.670373][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1648.670379][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1648.670383][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670386][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1648.670391][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1648.670396][ C3] handle_softirqs (kernel/softirq.c:579) [ 1648.670402][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1648.670406][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1648.670409][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1648.670415][ C3] [ 1648.670417][ C3] [ 1648.670418][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1648.670424][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1648.670427][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1648.670430][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1648.670434][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1648.670436][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1648.670438][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1648.670440][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1648.670442][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1648.670446][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1648.670452][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1648.670457][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1648.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 1648.670466][ C3] ? xas_alloc (lib/xarray.c:378) [ 1648.670469][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1648.670473][ C3] ? xas_alloc (lib/xarray.c:378) [ 1648.670475][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1648.670480][ C3] xas_alloc (lib/xarray.c:378) [ 1648.670485][ C3] xas_create (lib/xarray.c:685) [ 1648.670491][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1648.670495][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1648.670499][ C3] __xa_store (lib/xarray.c:1703) [ 1648.670503][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1648.670508][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1648.670511][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1648.670514][ C3] ? xa_store (lib/xarray.c:1734) [ 1648.670519][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1648.670523][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1648.670526][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1648.670531][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1648.670534][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1648.670537][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670541][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1648.670545][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1648.670550][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1648.670554][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1648.670559][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1648.670563][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1648.670567][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1648.670576][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1648.670580][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1648.670585][ C3] ksys_unshare (kernel/fork.c:3121) [ 1648.670590][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1648.670593][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1648.670597][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1648.670601][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1648.670604][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1648.670611][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1648.670615][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1648.670620][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1648.670624][ C3] RIP: 0033:0x7f439756d93b [ 1648.670628][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1648.670631][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1648.670634][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1648.670637][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1648.670638][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1648.670641][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1648.670643][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1664.656145][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1664.656155][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1664.656159][ C0] softirqs last disabled at (0): 0x0 | [ 1664.656173][ C0] Tainted: [L]=SOFTLOCKUP [ 1664.656174][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1664.656177][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1664.656187][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1664.656191][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1664.656194][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1664.656197][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1664.656199][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1664.656201][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1664.656203][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1664.656205][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1664.656208][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1664.656212][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1664.656215][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1664.656216][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1664.656218][ C0] PKRU: 55555554 [ 1664.656219][ C0] Call Trace: [ 1664.656225][ C0] [ 1664.656230][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1664.656234][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1664.656239][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1664.656244][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1664.656252][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1664.656256][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1664.656270][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1664.656273][ C0] ? xa_store (lib/xarray.c:1734) [ 1664.656280][ C0] xa_store (lib/xarray.c:1734) [ 1664.656286][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1664.656292][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1664.656298][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1664.656301][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1664.656304][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1664.656311][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1664.656314][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1664.656323][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1664.656327][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1664.656332][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1664.656339][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1664.656344][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1664.656354][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1664.656358][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1664.656364][ C0] ksys_unshare (kernel/fork.c:3121) [ 1664.656370][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1664.656373][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1664.656378][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1664.656382][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1664.656385][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1664.656393][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1664.656397][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1664.656404][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1664.656409][ C0] RIP: 0033:0x7f439756d93b [ 1664.656416][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1664.656418][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1664.656422][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1664.656424][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1664.656426][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1664.656428][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1664.656430][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1668.669137][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1668.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1668.669148][ C2] softirqs last disabled at (0): 0x0 | [ 1668.669160][ C2] Tainted: [L]=SOFTLOCKUP [ 1668.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1668.669163][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1668.669171][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1668.669183][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1668.669186][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1668.669188][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1668.669190][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1668.669192][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1668.669194][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1668.669196][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1668.669198][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1668.669202][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1668.669204][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1668.669206][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1668.669207][ C2] PKRU: 55555554 [ 1668.669209][ C2] Call Trace: [ 1668.669212][ C2] [ 1668.669216][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1668.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1668.669225][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1668.669229][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1668.669237][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1668.669241][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1668.669243][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1668.669246][ C2] ? xa_store (lib/xarray.c:1734) [ 1668.669253][ C2] xa_store (lib/xarray.c:1734) [ 1668.669257][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1668.669263][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1668.669268][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1668.669271][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1668.669274][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1668.669279][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1668.669283][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1668.669290][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1668.669294][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1668.669299][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1668.669305][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1668.669310][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1668.669318][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1668.669322][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1668.669328][ C2] ksys_unshare (kernel/fork.c:3121) [ 1668.669333][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1668.669336][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1668.669341][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1668.669344][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1668.669347][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1668.669354][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1668.669358][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1668.669363][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1668.669370][ C2] RIP: 0033:0x7f439756d93b [ 1668.669375][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1668.669378][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1668.669381][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1668.669383][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1668.669385][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1668.669387][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1668.669389][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1672.187529][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1672.187804][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1672.188045][ C1] NMI backtrace for cpu 1 | [ 1672.188065][ C1] Tainted: [L]=SOFTLOCKUP [ 1672.188067][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1672.188070][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1672.188080][ C1] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1672.188084][ C1] RSP: 0018:ffffc900034b7a00 EFLAGS: 00000282 [ 1672.188088][ C1] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1672.188090][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1672.188092][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1672.188094][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1672.188096][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1672.188099][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1672.188101][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1672.188105][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1672.188107][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1672.188108][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1672.188110][ C1] PKRU: 55555554 [ 1672.188111][ C1] Call Trace: [ 1672.188113][ C1] [ 1672.188115][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1672.188124][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1672.188127][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1672.188133][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1672.188137][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1672.188144][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1672.188147][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1672.188150][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1672.188153][ C1] ? xa_store (lib/xarray.c:1734) [ 1672.188160][ C1] xa_store (lib/xarray.c:1734) [ 1672.188164][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1672.188169][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1672.188174][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1672.188177][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1672.188180][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.188187][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.188190][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1672.188198][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1672.188202][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1672.188208][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1672.188214][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1672.188226][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1672.188235][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1672.188239][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1672.188246][ C1] ksys_unshare (kernel/fork.c:3121) [ 1672.188253][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1672.188257][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1672.188262][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1672.188265][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1672.188269][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1672.188276][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1672.188280][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1672.188286][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1672.188290][ C1] RIP: 0033:0x7f439756d93b [ 1672.188296][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1672.188298][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1672.188302][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1672.188304][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1672.188306][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1672.188308][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1672.188309][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1672.188308][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1672.188309][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1672.188315][ C1] | [ 1672.189049][ C3] Tainted: [L]=SOFTLOCKUP [ 1672.189050][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1672.189052][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1672.189058][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1672.189062][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1672.189065][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1672.189068][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1672.189070][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1672.189072][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1672.189074][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1672.189076][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1672.189079][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1672.189083][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1672.189085][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1672.189086][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1672.189088][ C3] PKRU: 55555554 [ 1672.189089][ C3] Call Trace: [ 1672.189091][ C3] [ 1672.189093][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1672.189098][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1672.189103][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1672.189106][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1672.189109][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1672.189114][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1672.189117][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1672.189124][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1672.189127][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1672.189130][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1672.189133][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1672.189135][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1672.189139][ C3] ? xas_alloc (lib/xarray.c:378) [ 1672.189144][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1672.189148][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1672.189151][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1672.189154][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1672.189159][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1672.189163][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1672.189168][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189172][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1672.189179][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1672.189184][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189187][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1672.189190][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1672.189193][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1672.189196][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1672.189199][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1672.189205][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1672.189208][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1672.189212][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1672.189216][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1672.189220][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1672.189224][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1672.189226][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1672.189230][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189234][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1672.189238][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1672.189242][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1672.189245][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1672.189250][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1672.189254][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189257][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1672.189262][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1672.189266][ C3] handle_softirqs (kernel/softirq.c:579) [ 1672.189272][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1672.189275][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1672.189278][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1672.189282][ C3] [ 1672.189283][ C3] [ 1672.189285][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1672.189289][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1672.189293][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1672.189298][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1672.189301][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1672.189303][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1672.189304][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1672.189307][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1672.189309][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1672.189313][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1672.189319][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1672.189324][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1672.189328][ C3] ? xas_alloc (lib/xarray.c:378) [ 1672.189333][ C3] ? xas_alloc (lib/xarray.c:378) [ 1672.189336][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1672.189340][ C3] ? xas_alloc (lib/xarray.c:378) [ 1672.189343][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1672.189348][ C3] xas_alloc (lib/xarray.c:378) [ 1672.189352][ C3] xas_create (lib/xarray.c:685) [ 1672.189358][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1672.189362][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1672.189366][ C3] __xa_store (lib/xarray.c:1703) [ 1672.189370][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1672.189375][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1672.189378][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1672.189381][ C3] ? xa_store (lib/xarray.c:1734) [ 1672.189386][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1672.189390][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1672.189393][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1672.189398][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1672.189401][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1672.189403][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189407][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1672.189411][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1672.189415][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1672.189419][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1672.189424][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1672.189428][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1672.189432][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1672.189439][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1672.189443][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1672.189448][ C3] ksys_unshare (kernel/fork.c:3121) [ 1672.189454][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1672.189457][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1672.189460][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1672.189463][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1672.189466][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1672.189473][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1672.189476][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1672.189481][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1672.189485][ C3] RIP: 0033:0x7f439756d93b [ 1672.189490][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1672.189493][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1672.189496][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1672.189497][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1672.189499][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1672.189501][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1672.189502][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1692.656143][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1692.656153][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1692.656157][ C0] softirqs last disabled at (0): 0x0 | [ 1692.656171][ C0] Tainted: [L]=SOFTLOCKUP [ 1692.656172][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1692.656176][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1692.656186][ C0] Code: 00 00 fc ff df 49 01 c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 <8b> 45 00 89 44 24 40 85 c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 All code ======== 0: 00 00 add %al,(%rax) 2: fc cld 3: ff lcall (bad) 4: df 49 01 fisttps 0x1(%rcx) 7: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) b: 03 be 04 00 00 00 add 0x4(%rsi),%edi 11: 48 89 ef mov %rbp,%rdi 14: e8 5d b8 c7 fd call 0xfffffffffdc7b876 19: 41 0f b6 06 movzbl (%r14),%eax 1d: 41 38 c5 cmp %al,%r13b 20: 7c 08 jl 0x2a 22: 84 c0 test %al,%al 24: 0f 85 8d 07 00 00 jne 0x7b7 2a:* 8b 45 00 mov 0x0(%rbp),%eax <-- trapping instruction 2d: 89 44 24 40 mov %eax,0x40(%rsp) 31: 85 c0 test %eax,%eax 33: 0f 85 6e 01 00 00 jne 0x1a7 39: 48 89 ef mov %rbp,%rdi 3c: be .byte 0xbe 3d: 04 00 add $0x0,%al ... Code starting with the faulting instruction =========================================== 0: 8b 45 00 mov 0x0(%rbp),%eax 3: 89 44 24 40 mov %eax,0x40(%rsp) 7: 85 c0 test %eax,%eax 9: 0f 85 6e 01 00 00 jne 0x17d f: 48 89 ef mov %rbp,%rdi 12: be .byte 0xbe 13: 04 00 add $0x0,%al ... [ 1692.656190][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000246 [ 1692.656193][ C0] RAX: 0000000000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1692.656196][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1692.656198][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1692.656200][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1692.656202][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1692.656204][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1692.656207][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1692.656211][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1692.656213][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1692.656215][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1692.656217][ C0] PKRU: 55555554 [ 1692.656218][ C0] Call Trace: [ 1692.656223][ C0] [ 1692.656228][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1692.656232][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1692.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1692.656242][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1692.656250][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1692.656254][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1692.656256][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1692.656259][ C0] ? xa_store (lib/xarray.c:1734) [ 1692.656266][ C0] xa_store (lib/xarray.c:1734) [ 1692.656271][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1692.656278][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1692.656283][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1692.656294][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1692.656297][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1692.656304][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1692.656308][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1692.656315][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1692.656319][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1692.656325][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1692.656332][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1692.656337][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1692.656347][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1692.656351][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1692.656358][ C0] ksys_unshare (kernel/fork.c:3121) [ 1692.656363][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1692.656367][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1692.656372][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1692.656376][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1692.656380][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1692.656387][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1692.656392][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1692.656398][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1692.656403][ C0] RIP: 0033:0x7f439756d93b [ 1692.656408][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1692.656411][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1692.656415][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1692.656417][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1692.656418][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1692.656421][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1692.656423][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1696.669136][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1696.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1696.669148][ C2] softirqs last disabled at (0): 0x0 | [ 1696.669161][ C2] Tainted: [L]=SOFTLOCKUP [ 1696.669162][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1696.669164][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1696.669173][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1696.669176][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1696.669179][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1696.669182][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1696.669184][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1696.669186][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1696.669193][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1696.669195][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1696.669197][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1696.669201][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1696.669203][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1696.669205][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1696.669207][ C2] PKRU: 55555554 [ 1696.669209][ C2] Call Trace: [ 1696.669211][ C2] [ 1696.669215][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1696.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.669224][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.669228][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1696.669236][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1696.669240][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.669243][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.669246][ C2] ? xa_store (lib/xarray.c:1734) [ 1696.669252][ C2] xa_store (lib/xarray.c:1734) [ 1696.669256][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1696.669261][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1696.669266][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.669269][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.669272][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.669278][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.669281][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1696.669288][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1696.669292][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1696.669296][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1696.669302][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1696.669307][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1696.669315][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1696.669318][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1696.669324][ C2] ksys_unshare (kernel/fork.c:3121) [ 1696.669328][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1696.669332][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1696.669336][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1696.669339][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1696.669343][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1696.669349][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1696.669353][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1696.669358][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1696.669363][ C2] RIP: 0033:0x7f439756d93b [ 1696.669367][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1696.669370][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1696.669373][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1696.669375][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1696.669377][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1696.669381][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1696.669383][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1696.669429][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1696.669438][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1696.669442][ C1] softirqs last disabled at (0): 0x0 | [ 1696.669456][ C1] Tainted: [L]=SOFTLOCKUP [ 1696.669457][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1696.669460][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1696.669469][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1696.669473][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1696.669476][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1696.669478][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1696.669480][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1696.669482][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1696.669484][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1696.669486][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1696.669489][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1696.669493][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1696.669495][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1696.669497][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1696.669499][ C1] PKRU: 55555554 [ 1696.669500][ C1] Call Trace: [ 1696.669504][ C1] [ 1696.669509][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1696.669513][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.669519][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.669523][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1696.669530][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1696.669534][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.669537][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.669540][ C1] ? xa_store (lib/xarray.c:1734) [ 1696.669547][ C1] xa_store (lib/xarray.c:1734) [ 1696.669552][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1696.669558][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1696.669563][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.669566][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.669569][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.669575][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.669579][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1696.669586][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1696.669596][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1696.669601][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1696.669608][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1696.669613][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1696.669622][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1696.669626][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1696.669632][ C1] ksys_unshare (kernel/fork.c:3121) [ 1696.669637][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1696.669641][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1696.669646][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1696.669649][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1696.669653][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1696.669660][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1696.669664][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1696.669670][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1696.669675][ C1] RIP: 0033:0x7f439756d93b [ 1696.669681][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1696.669684][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1696.669687][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1696.669689][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1696.669691][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1696.669693][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1696.669695][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1696.670127][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1696.670133][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1696.670137][ C3] softirqs last disabled at (0): 0x0 | [ 1696.670147][ C3] Tainted: [L]=SOFTLOCKUP [ 1696.670148][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1696.670150][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1696.670155][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1696.670158][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1696.670161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1696.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1696.670165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1696.670167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1696.670169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1696.670172][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1696.670174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1696.670178][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1696.670181][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1696.670182][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1696.670189][ C3] PKRU: 55555554 [ 1696.670191][ C3] Call Trace: [ 1696.670193][ C3] [ 1696.670194][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1696.670200][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1696.670204][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1696.670208][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1696.670212][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1696.670217][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1696.670220][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1696.670224][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1696.670228][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1696.670231][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1696.670233][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1696.670236][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1696.670239][ C3] ? xas_alloc (lib/xarray.c:378) [ 1696.670244][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1696.670248][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.670251][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.670254][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1696.670260][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1696.670264][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1696.670269][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670273][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1696.670279][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1696.670283][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670286][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1696.670289][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1696.670292][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1696.670296][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1696.670299][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1696.670304][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1696.670307][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1696.670310][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1696.670315][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1696.670319][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1696.670322][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1696.670325][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1696.670329][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670332][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1696.670336][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1696.670341][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1696.670344][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1696.670349][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1696.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670356][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1696.670363][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1696.670368][ C3] handle_softirqs (kernel/softirq.c:579) [ 1696.670373][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1696.670377][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1696.670380][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1696.670384][ C3] [ 1696.670385][ C3] [ 1696.670387][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1696.670391][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1696.670395][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1696.670397][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1696.670400][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1696.670403][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1696.670405][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1696.670407][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1696.670409][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1696.670413][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1696.670418][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1696.670424][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1696.670428][ C3] ? xas_alloc (lib/xarray.c:378) [ 1696.670432][ C3] ? xas_alloc (lib/xarray.c:378) [ 1696.670435][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1696.670440][ C3] ? xas_alloc (lib/xarray.c:378) [ 1696.670442][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1696.670447][ C3] xas_alloc (lib/xarray.c:378) [ 1696.670452][ C3] xas_create (lib/xarray.c:685) [ 1696.670458][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1696.670462][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.670466][ C3] __xa_store (lib/xarray.c:1703) [ 1696.670471][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1696.670475][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.670478][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1696.670481][ C3] ? xa_store (lib/xarray.c:1734) [ 1696.670486][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1696.670490][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1696.670494][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1696.670499][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1696.670502][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1696.670504][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670508][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1696.670512][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1696.670516][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1696.670520][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1696.670525][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1696.670528][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1696.670533][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1696.670540][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1696.670545][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1696.670550][ C3] ksys_unshare (kernel/fork.c:3121) [ 1696.670554][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1696.670557][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1696.670561][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1696.670563][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1696.670567][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1696.670573][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1696.670576][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1696.670581][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1696.670583][ C3] RIP: 0033:0x7f439756d93b [ 1696.670586][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1696.670589][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1696.670592][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1696.670594][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1696.670595][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1696.670597][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1696.670599][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1720.656172][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1720.656194][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1720.656198][ C0] softirqs last disabled at (0): 0x0 | [ 1720.656213][ C0] Tainted: [L]=SOFTLOCKUP [ 1720.656215][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1720.656218][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1720.656231][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1720.656236][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1720.656242][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1720.656244][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1720.656246][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1720.656248][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1720.656250][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1720.656252][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1720.656254][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1720.656258][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1720.656260][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1720.656261][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1720.656263][ C0] PKRU: 55555554 [ 1720.656264][ C0] Call Trace: [ 1720.656271][ C0] [ 1720.656277][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1720.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1720.656295][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1720.656299][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1720.656308][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1720.656318][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1720.656321][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1720.656325][ C0] ? xa_store (lib/xarray.c:1734) [ 1720.656332][ C0] xa_store (lib/xarray.c:1734) [ 1720.656341][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1720.656350][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1720.656355][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1720.656358][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1720.656361][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1720.656369][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1720.656373][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1720.656381][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1720.656385][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1720.656390][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1720.656402][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1720.656407][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1720.656418][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1720.656422][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1720.656429][ C0] ksys_unshare (kernel/fork.c:3121) [ 1720.656436][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1720.656439][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1720.656447][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1720.656450][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1720.656454][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1720.656465][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1720.656469][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1720.656478][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1720.656490][ C0] RIP: 0033:0x7f439756d93b [ 1720.656497][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1720.656500][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1720.656504][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1720.656506][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1720.656508][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1720.656510][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1720.656512][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1724.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1724.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1724.669148][ C2] softirqs last disabled at (0): 0x0 | [ 1724.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 1724.669170][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1724.669172][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 1724.669179][ C2] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 1724.669182][ C2] RSP: 0018:ffffc900034d7a00 EFLAGS: 00000282 [ 1724.669185][ C2] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1724.669188][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1724.669190][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1724.669192][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1724.669194][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1724.669196][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1724.669199][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1724.669202][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1724.669204][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1724.669206][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1724.669208][ C2] PKRU: 55555554 [ 1724.669209][ C2] Call Trace: [ 1724.669212][ C2] [ 1724.669214][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1724.669224][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1724.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.669237][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1724.669244][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1724.669247][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.669250][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.669253][ C2] ? xa_store (lib/xarray.c:1734) [ 1724.669259][ C2] xa_store (lib/xarray.c:1734) [ 1724.669264][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1724.669269][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1724.669274][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.669277][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.669280][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.669290][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1724.669297][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1724.669301][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1724.669305][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1724.669312][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1724.669316][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1724.669325][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1724.669329][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1724.669334][ C2] ksys_unshare (kernel/fork.c:3121) [ 1724.669339][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1724.669342][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1724.669350][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1724.669353][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1724.669357][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1724.669364][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1724.669368][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1724.669373][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1724.669378][ C2] RIP: 0033:0x7f439756d93b [ 1724.669384][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1724.669387][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1724.669390][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1724.669392][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1724.669394][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1724.669396][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1724.669398][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1724.669442][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1724.669459][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1724.669463][ C1] softirqs last disabled at (0): 0x0 | [ 1724.669476][ C1] Tainted: [L]=SOFTLOCKUP [ 1724.669478][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1724.669481][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1724.669490][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1724.669493][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1724.669497][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1724.669499][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1724.669501][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1724.669503][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1724.669505][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1724.669508][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1724.669510][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1724.669514][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1724.669516][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1724.669518][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1724.669520][ C1] PKRU: 55555554 [ 1724.669521][ C1] Call Trace: [ 1724.669525][ C1] [ 1724.669529][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1724.669534][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.669539][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.669544][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1724.669551][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1724.669555][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.669560][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.669564][ C1] ? xa_store (lib/xarray.c:1734) [ 1724.669571][ C1] xa_store (lib/xarray.c:1734) [ 1724.669575][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1724.669580][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1724.669586][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.669589][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.669592][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.669599][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.669602][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1724.669610][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1724.669614][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1724.669619][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1724.669626][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1724.669630][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1724.669639][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1724.669643][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1724.669649][ C1] ksys_unshare (kernel/fork.c:3121) [ 1724.669655][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1724.669658][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1724.669663][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1724.669666][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1724.669670][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1724.669677][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1724.669681][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1724.669687][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1724.669692][ C1] RIP: 0033:0x7f439756d93b [ 1724.669697][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1724.669700][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1724.669704][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1724.669705][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1724.669707][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1724.669709][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1724.669711][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1724.670129][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1724.670136][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1724.670140][ C3] softirqs last disabled at (0): 0x0 | [ 1724.670150][ C3] Tainted: [L]=SOFTLOCKUP [ 1724.670151][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1724.670153][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 1724.670157][ C3] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 1724.670165][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000246 [ 1724.670168][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1724.670170][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1724.670172][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1724.670174][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1724.670176][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1724.670178][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1724.670180][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1724.670184][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1724.670186][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1724.670188][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1724.670190][ C3] PKRU: 55555554 [ 1724.670191][ C3] Call Trace: [ 1724.670193][ C3] [ 1724.670195][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1724.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1724.670206][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1724.670211][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1724.670214][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1724.670219][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1724.670223][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1724.670226][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1724.670230][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1724.670234][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1724.670237][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1724.670239][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1724.670242][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1724.670245][ C3] ? xas_alloc (lib/xarray.c:378) [ 1724.670250][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1724.670255][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.670258][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.670261][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1724.670266][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1724.670273][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1724.670278][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670283][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1724.670288][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1724.670292][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670295][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1724.670298][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1724.670302][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1724.670305][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1724.670308][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1724.670318][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1724.670321][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1724.670324][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1724.670330][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1724.670335][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1724.670338][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1724.670341][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1724.670346][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670350][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1724.670354][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1724.670361][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1724.670364][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1724.670371][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1724.670375][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670378][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1724.670383][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1724.670388][ C3] handle_softirqs (kernel/softirq.c:579) [ 1724.670393][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1724.670397][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1724.670400][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1724.670404][ C3] [ 1724.670406][ C3] [ 1724.670407][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1724.670412][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1724.670415][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1724.670418][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1724.670421][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1724.670423][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1724.670425][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1724.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1724.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1724.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1724.670438][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1724.670444][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1724.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 1724.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 1724.670455][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1724.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 1724.670462][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1724.670467][ C3] xas_alloc (lib/xarray.c:378) [ 1724.670472][ C3] xas_create (lib/xarray.c:685) [ 1724.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1724.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.670486][ C3] __xa_store (lib/xarray.c:1703) [ 1724.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1724.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1724.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 1724.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1724.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1724.670515][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1724.670520][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1724.670523][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1724.670527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1724.670535][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1724.670540][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1724.670543][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1724.670548][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1724.670552][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1724.670557][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1724.670565][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1724.670569][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1724.670573][ C3] ksys_unshare (kernel/fork.c:3121) [ 1724.670577][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1724.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1724.670584][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1724.670587][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1724.670590][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1724.670596][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1724.670599][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1724.670604][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1724.670607][ C3] RIP: 0033:0x7f439756d93b [ 1724.670613][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1724.670615][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1724.670618][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1724.670620][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1724.670622][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1724.670624][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1724.670625][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1748.656145][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1748.656155][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1748.656159][ C0] softirqs last disabled at (0): 0x0 | [ 1748.656173][ C0] Tainted: [L]=SOFTLOCKUP [ 1748.656175][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1748.656178][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1748.656188][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1748.656191][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1748.656194][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1748.656196][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1748.656206][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1748.656208][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1748.656210][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1748.656212][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1748.656215][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1748.656219][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1748.656222][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1748.656224][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1748.656226][ C0] PKRU: 55555554 [ 1748.656227][ C0] Call Trace: [ 1748.656232][ C0] [ 1748.656237][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1748.656241][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1748.656247][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1748.656251][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1748.656259][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1748.656263][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1748.656266][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1748.656270][ C0] ? xa_store (lib/xarray.c:1734) [ 1748.656277][ C0] xa_store (lib/xarray.c:1734) [ 1748.656282][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1748.656289][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1748.656294][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1748.656297][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1748.656300][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1748.656307][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1748.656311][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1748.656318][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1748.656322][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1748.656327][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1748.656334][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1748.656339][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1748.656348][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1748.656352][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1748.656359][ C0] ksys_unshare (kernel/fork.c:3121) [ 1748.656364][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1748.656368][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1748.656373][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1748.656376][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1748.656380][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1748.656387][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1748.656391][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1748.656398][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1748.656404][ C0] RIP: 0033:0x7f439756d93b [ 1748.656409][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1748.656412][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1748.656416][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1748.656418][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1748.656420][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1748.656422][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1748.656424][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1750.202368][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1750.202645][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1750.202901][ C1] NMI backtrace for cpu 1 | [ 1750.202920][ C1] Tainted: [L]=SOFTLOCKUP [ 1750.202922][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1750.202925][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1750.202937][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1750.202941][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1750.202945][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1750.202947][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1750.202950][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1750.202952][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1750.202954][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1750.202956][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1750.202959][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1750.202963][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1750.202964][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1750.202966][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1750.202968][ C1] PKRU: 55555554 [ 1750.202969][ C1] Call Trace: [ 1750.202970][ C1] [ 1750.202973][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1750.202977][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1750.202983][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1750.202987][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1750.202995][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1750.202998][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1750.203000][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1750.203004][ C1] ? xa_store (lib/xarray.c:1734) [ 1750.203010][ C1] xa_store (lib/xarray.c:1734) [ 1750.203014][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1750.203019][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1750.203024][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1750.203027][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1750.203033][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.203039][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.203043][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1750.203051][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1750.203055][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1750.203060][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1750.203067][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1750.203071][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1750.203081][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1750.203084][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1750.203091][ C1] ksys_unshare (kernel/fork.c:3121) [ 1750.203098][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1750.203101][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1750.203106][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1750.203109][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1750.203113][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1750.203120][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1750.203124][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1750.203130][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1750.203135][ C1] RIP: 0033:0x7f439756d93b [ 1750.203141][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1750.203143][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1750.203147][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1750.203149][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1750.203151][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1750.203153][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1750.203155][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1750.203153][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1750.203155][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1750.203161][ C1] | [ 1750.203896][ C3] Tainted: [L]=SOFTLOCKUP [ 1750.203898][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1750.203901][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1750.203909][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1750.203912][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1750.203917][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1750.203919][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1750.203921][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1750.203923][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1750.203925][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1750.203927][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1750.203929][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1750.203933][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1750.203935][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1750.203937][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1750.203938][ C3] PKRU: 55555554 [ 1750.203940][ C3] Call Trace: [ 1750.203941][ C3] [ 1750.203943][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1750.203949][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1750.203953][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1750.203956][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1750.203959][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1750.203965][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1750.203968][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1750.203972][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1750.203975][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1750.203979][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1750.203981][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1750.203984][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1750.203987][ C3] ? xas_alloc (lib/xarray.c:378) [ 1750.203992][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1750.203996][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1750.203999][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1750.204003][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1750.204009][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1750.204012][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1750.204018][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204022][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1750.204029][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1750.204034][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204037][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1750.204040][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1750.204043][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1750.204046][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1750.204049][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1750.204055][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1750.204058][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1750.204062][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1750.204066][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1750.204070][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1750.204073][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1750.204076][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1750.204080][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204083][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1750.204087][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1750.204092][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1750.204094][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1750.204099][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1750.204103][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204106][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1750.204111][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1750.204115][ C3] handle_softirqs (kernel/softirq.c:579) [ 1750.204120][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1750.204124][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1750.204127][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1750.204130][ C3] [ 1750.204131][ C3] [ 1750.204133][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1750.204137][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1750.204140][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1750.204143][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1750.204145][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1750.204147][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1750.204148][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1750.204150][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1750.204152][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1750.204157][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1750.204162][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1750.204168][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1750.204172][ C3] ? xas_alloc (lib/xarray.c:378) [ 1750.204176][ C3] ? xas_alloc (lib/xarray.c:378) [ 1750.204179][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1750.204183][ C3] ? xas_alloc (lib/xarray.c:378) [ 1750.204186][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1750.204190][ C3] xas_alloc (lib/xarray.c:378) [ 1750.204195][ C3] xas_create (lib/xarray.c:685) [ 1750.204201][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1750.204205][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1750.204209][ C3] __xa_store (lib/xarray.c:1703) [ 1750.204212][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1750.204217][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1750.204220][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1750.204223][ C3] ? xa_store (lib/xarray.c:1734) [ 1750.204228][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1750.204231][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1750.204234][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1750.204239][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1750.204242][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1750.204245][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204249][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1750.204252][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1750.204257][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1750.204260][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1750.204265][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1750.204269][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1750.204273][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1750.204280][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1750.204284][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1750.204289][ C3] ksys_unshare (kernel/fork.c:3121) [ 1750.204295][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1750.204298][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1750.204302][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1750.204304][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1750.204308][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1750.204314][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1750.204317][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1750.204322][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1750.204325][ C3] RIP: 0033:0x7f439756d93b [ 1750.204330][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1750.204332][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1750.204335][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1750.204340][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1750.204341][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1750.204343][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1750.204345][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1752.669133][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1752.669140][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1752.669143][ C2] softirqs last disabled at (0): 0x0 | [ 1752.669154][ C2] Tainted: [L]=SOFTLOCKUP [ 1752.669156][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1752.669158][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1752.669164][ C2] Code: 00 00 fc ff df 49 01 c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 <8b> 45 00 89 44 24 40 85 c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 All code ======== 0: 00 00 add %al,(%rax) 2: fc cld 3: ff lcall (bad) 4: df 49 01 fisttps 0x1(%rcx) 7: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) b: 03 be 04 00 00 00 add 0x4(%rsi),%edi 11: 48 89 ef mov %rbp,%rdi 14: e8 5d b8 c7 fd call 0xfffffffffdc7b876 19: 41 0f b6 06 movzbl (%r14),%eax 1d: 41 38 c5 cmp %al,%r13b 20: 7c 08 jl 0x2a 22: 84 c0 test %al,%al 24: 0f 85 8d 07 00 00 jne 0x7b7 2a:* 8b 45 00 mov 0x0(%rbp),%eax <-- trapping instruction 2d: 89 44 24 40 mov %eax,0x40(%rsp) 31: 85 c0 test %eax,%eax 33: 0f 85 6e 01 00 00 jne 0x1a7 39: 48 89 ef mov %rbp,%rdi 3c: be .byte 0xbe 3d: 04 00 add $0x0,%al ... Code starting with the faulting instruction =========================================== 0: 8b 45 00 mov 0x0(%rbp),%eax 3: 89 44 24 40 mov %eax,0x40(%rsp) 7: 85 c0 test %eax,%eax 9: 0f 85 6e 01 00 00 jne 0x17d f: 48 89 ef mov %rbp,%rdi 12: be .byte 0xbe 13: 04 00 add $0x0,%al ... [ 1752.669167][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000246 [ 1752.669170][ C2] RAX: 0000000000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1752.669172][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1752.669184][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1752.669186][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1752.669187][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1752.669189][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1752.669192][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1752.669196][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1752.669198][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1752.669200][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1752.669202][ C2] PKRU: 55555554 [ 1752.669203][ C2] Call Trace: [ 1752.669207][ C2] [ 1752.669210][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1752.669214][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1752.669219][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1752.669222][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1752.669229][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1752.669233][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1752.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1752.669238][ C2] ? xa_store (lib/xarray.c:1734) [ 1752.669244][ C2] xa_store (lib/xarray.c:1734) [ 1752.669249][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1752.669254][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1752.669259][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1752.669262][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1752.669264][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1752.669270][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1752.669273][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1752.669281][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1752.669285][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1752.669290][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1752.669295][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1752.669299][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1752.669307][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1752.669310][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1752.669315][ C2] ksys_unshare (kernel/fork.c:3121) [ 1752.669320][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1752.669323][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1752.669327][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1752.669330][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1752.669334][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1752.669340][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1752.669344][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1752.669349][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1752.669353][ C2] RIP: 0033:0x7f439756d93b [ 1752.669357][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1752.669360][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1752.669363][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1752.669365][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1752.669367][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1752.669369][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1752.669371][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1776.656146][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1776.656156][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1776.656160][ C0] softirqs last disabled at (0): 0x0 | [ 1776.656174][ C0] Tainted: [L]=SOFTLOCKUP [ 1776.656176][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1776.656179][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1776.656190][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1776.656193][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1776.656197][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1776.656199][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1776.656201][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1776.656204][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1776.656206][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1776.656208][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1776.656211][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1776.656215][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1776.656217][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1776.656230][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1776.656232][ C0] PKRU: 55555554 [ 1776.656233][ C0] Call Trace: [ 1776.656238][ C0] [ 1776.656243][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1776.656247][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.656253][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.656257][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1776.656266][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1776.656270][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.656273][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.656276][ C0] ? xa_store (lib/xarray.c:1734) [ 1776.656283][ C0] xa_store (lib/xarray.c:1734) [ 1776.656288][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1776.656295][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1776.656300][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.656304][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.656306][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.656314][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.656317][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1776.656325][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1776.656329][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1776.656334][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1776.656342][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1776.656347][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1776.656358][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1776.656362][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1776.656369][ C0] ksys_unshare (kernel/fork.c:3121) [ 1776.656374][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1776.656378][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1776.656383][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1776.656387][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1776.656390][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1776.656398][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1776.656402][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1776.656408][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1776.656413][ C0] RIP: 0033:0x7f439756d93b [ 1776.656419][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1776.656422][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1776.656425][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1776.656427][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1776.656429][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1776.656431][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1776.656434][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1776.669131][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1776.669138][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1776.669141][ C1] softirqs last disabled at (0): 0x0 | [ 1776.669152][ C1] Tainted: [L]=SOFTLOCKUP [ 1776.669154][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1776.669156][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1776.669162][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1776.669165][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1776.669167][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1776.669170][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1776.669172][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1776.669174][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1776.669176][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1776.669178][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1776.669181][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1776.669184][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1776.669186][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1776.669188][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1776.669190][ C1] PKRU: 55555554 [ 1776.669191][ C1] Call Trace: [ 1776.669193][ C1] [ 1776.669196][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1776.669201][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.669205][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.669208][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1776.669214][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1776.669217][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.669220][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.669223][ C1] ? xa_store (lib/xarray.c:1734) [ 1776.669229][ C1] xa_store (lib/xarray.c:1734) [ 1776.669233][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1776.669237][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1776.669243][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.669246][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.669249][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.669254][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.669257][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1776.669264][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1776.669268][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1776.669272][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1776.669277][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1776.669281][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1776.669288][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1776.669295][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1776.669299][ C1] ksys_unshare (kernel/fork.c:3121) [ 1776.669304][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1776.669310][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1776.669314][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1776.669317][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1776.669321][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1776.669327][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1776.669331][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1776.669335][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1776.669339][ C1] RIP: 0033:0x7f439756d93b [ 1776.669343][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1776.669347][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1776.669350][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1776.669352][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1776.669354][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1776.669356][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1776.669358][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1776.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1776.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1776.670148][ C3] softirqs last disabled at (0): 0x0 | [ 1776.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 1776.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1776.670163][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1776.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1776.670174][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1776.670177][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1776.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1776.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1776.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1776.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1776.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1776.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1776.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1776.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1776.670198][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1776.670200][ C3] PKRU: 55555554 [ 1776.670201][ C3] Call Trace: [ 1776.670205][ C3] [ 1776.670207][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1776.670220][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1776.670225][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1776.670229][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1776.670233][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1776.670238][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1776.670241][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1776.670246][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1776.670249][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1776.670253][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1776.670255][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1776.670258][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1776.670261][ C3] ? xas_alloc (lib/xarray.c:378) [ 1776.670267][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1776.670272][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.670274][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.670278][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1776.670284][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1776.670288][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1776.670294][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670298][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1776.670305][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1776.670310][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670313][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1776.670316][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1776.670320][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1776.670324][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1776.670326][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1776.670332][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1776.670335][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1776.670339][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1776.670343][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1776.670348][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1776.670351][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1776.670354][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1776.670357][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670361][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1776.670365][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1776.670370][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1776.670373][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1776.670379][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1776.670383][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670386][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1776.670391][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1776.670396][ C3] handle_softirqs (kernel/softirq.c:579) [ 1776.670402][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1776.670405][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1776.670409][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1776.670414][ C3] [ 1776.670415][ C3] [ 1776.670417][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1776.670422][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1776.670425][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1776.670428][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1776.670431][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1776.670433][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1776.670435][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1776.670437][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1776.670439][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1776.670443][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1776.670449][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1776.670455][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1776.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 1776.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 1776.670466][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1776.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 1776.670473][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1776.670478][ C3] xas_alloc (lib/xarray.c:378) [ 1776.670483][ C3] xas_create (lib/xarray.c:685) [ 1776.670489][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1776.670493][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.670497][ C3] __xa_store (lib/xarray.c:1703) [ 1776.670502][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1776.670506][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.670509][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1776.670512][ C3] ? xa_store (lib/xarray.c:1734) [ 1776.670517][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1776.670521][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1776.670525][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1776.670530][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1776.670533][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1776.670536][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670540][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1776.670543][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1776.670548][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1776.670551][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1776.670556][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1776.670560][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1776.670565][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1776.670572][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1776.670576][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1776.670582][ C3] ksys_unshare (kernel/fork.c:3121) [ 1776.670587][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1776.670590][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1776.670595][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1776.670598][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1776.670601][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1776.670608][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1776.670612][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1776.670616][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1776.670620][ C3] RIP: 0033:0x7f439756d93b [ 1776.670624][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1776.670631][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1776.670634][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1776.670636][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1776.670638][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1776.670640][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1776.670642][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1780.669130][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1780.669137][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1780.669140][ C2] softirqs last disabled at (0): 0x0 | [ 1780.669151][ C2] Tainted: [L]=SOFTLOCKUP [ 1780.669153][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1780.669155][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1780.669161][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1780.669164][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1780.669167][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1780.669169][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1780.669171][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1780.669173][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1780.669175][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1780.669177][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1780.669179][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1780.669191][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1780.669193][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1780.669195][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1780.669196][ C2] PKRU: 55555554 [ 1780.669198][ C2] Call Trace: [ 1780.669201][ C2] [ 1780.669205][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1780.669209][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1780.669213][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1780.669217][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1780.669223][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1780.669227][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1780.669232][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1780.669235][ C2] ? xa_store (lib/xarray.c:1734) [ 1780.669240][ C2] xa_store (lib/xarray.c:1734) [ 1780.669245][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1780.669249][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1780.669254][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1780.669258][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1780.669260][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1780.669265][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1780.669269][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1780.669275][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1780.669279][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1780.669283][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1780.669289][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1780.669293][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1780.669300][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1780.669304][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1780.669309][ C2] ksys_unshare (kernel/fork.c:3121) [ 1780.669314][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1780.669317][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1780.669321][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1780.669324][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1780.669328][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1780.669334][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1780.669338][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1780.669342][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1780.669346][ C2] RIP: 0033:0x7f439756d93b [ 1780.669350][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1780.669353][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1780.669356][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1780.669358][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1780.669360][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1780.669361][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1780.669363][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1804.656144][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1804.656155][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1804.656158][ C0] softirqs last disabled at (0): 0x0 | [ 1804.656172][ C0] Tainted: [L]=SOFTLOCKUP [ 1804.656174][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1804.656177][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1804.656187][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1804.656191][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1804.656194][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1804.656196][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1804.656199][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1804.656201][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1804.656203][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1804.656205][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1804.656208][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1804.656212][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1804.656214][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1804.656216][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1804.656218][ C0] PKRU: 55555554 [ 1804.656219][ C0] Call Trace: [ 1804.656224][ C0] [ 1804.656228][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1804.656232][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.656238][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.656243][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1804.656251][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1804.656254][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.656257][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.656260][ C0] ? xa_store (lib/xarray.c:1734) [ 1804.656268][ C0] xa_store (lib/xarray.c:1734) [ 1804.656273][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1804.656279][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1804.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.656287][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.656290][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.656298][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.656301][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1804.656309][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1804.656313][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1804.656318][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1804.656326][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1804.656330][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1804.656341][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1804.656345][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1804.656352][ C0] ksys_unshare (kernel/fork.c:3121) [ 1804.656357][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1804.656361][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1804.656366][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1804.656370][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1804.656373][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1804.656380][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1804.656384][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1804.656391][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1804.656396][ C0] RIP: 0033:0x7f439756d93b [ 1804.656402][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1804.656404][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1804.656408][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1804.656410][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1804.656412][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1804.656414][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1804.656416][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1804.669124][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1804.669130][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1804.669134][ C1] softirqs last disabled at (0): 0x0 | [ 1804.669144][ C1] Tainted: [L]=SOFTLOCKUP [ 1804.669145][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1804.669147][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1804.669152][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1804.669155][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1804.669158][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1804.669160][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1804.669162][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1804.669164][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1804.669167][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1804.669169][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1804.669171][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1804.669181][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1804.669183][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1804.669185][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1804.669186][ C1] PKRU: 55555554 [ 1804.669188][ C1] Call Trace: [ 1804.669189][ C1] [ 1804.669192][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1804.669196][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.669204][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1804.669209][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1804.669213][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.669216][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.669219][ C1] ? xa_store (lib/xarray.c:1734) [ 1804.669225][ C1] xa_store (lib/xarray.c:1734) [ 1804.669229][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1804.669232][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1804.669238][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.669241][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.669244][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.669248][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.669252][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1804.669258][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1804.669262][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1804.669266][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1804.669270][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1804.669275][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1804.669281][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1804.669285][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1804.669291][ C1] ksys_unshare (kernel/fork.c:3121) [ 1804.669295][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1804.669298][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1804.669302][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1804.669305][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1804.669309][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1804.669314][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1804.669318][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1804.669322][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1804.669325][ C1] RIP: 0033:0x7f439756d93b [ 1804.669329][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1804.669332][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1804.669335][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1804.669337][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1804.669339][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1804.669341][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1804.669343][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1804.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1804.670140][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1804.670144][ C3] softirqs last disabled at (0): 0x0 | [ 1804.670155][ C3] Tainted: [L]=SOFTLOCKUP [ 1804.670156][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1804.670158][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1804.670165][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1804.670167][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1804.670170][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1804.670172][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1804.670174][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1804.670176][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1804.670178][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1804.670180][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1804.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1804.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1804.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1804.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1804.670196][ C3] PKRU: 55555554 [ 1804.670197][ C3] Call Trace: [ 1804.670200][ C3] [ 1804.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1804.670207][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1804.670212][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1804.670215][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1804.670220][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1804.670224][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1804.670228][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1804.670232][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1804.670235][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1804.670238][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1804.670241][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1804.670243][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1804.670246][ C3] ? xas_alloc (lib/xarray.c:378) [ 1804.670252][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1804.670256][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.670259][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.670263][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1804.670268][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1804.670272][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1804.670277][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670282][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1804.670289][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1804.670294][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670297][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1804.670300][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1804.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1804.670307][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1804.670310][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1804.670315][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1804.670318][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1804.670321][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1804.670326][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1804.670330][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1804.670333][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1804.670336][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1804.670338][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670342][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1804.670346][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1804.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1804.670354][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1804.670360][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1804.670364][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670367][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1804.670372][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1804.670377][ C3] handle_softirqs (kernel/softirq.c:579) [ 1804.670382][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1804.670386][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1804.670389][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1804.670394][ C3] [ 1804.670395][ C3] [ 1804.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1804.670401][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1804.670404][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1804.670407][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1804.670409][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1804.670411][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1804.670413][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1804.670415][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1804.670417][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1804.670421][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1804.670426][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1804.670432][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1804.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 1804.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 1804.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1804.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 1804.670456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1804.670462][ C3] xas_alloc (lib/xarray.c:378) [ 1804.670466][ C3] xas_create (lib/xarray.c:685) [ 1804.670472][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1804.670476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.670480][ C3] __xa_store (lib/xarray.c:1703) [ 1804.670484][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1804.670489][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.670492][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1804.670495][ C3] ? xa_store (lib/xarray.c:1734) [ 1804.670501][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1804.670505][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1804.670509][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1804.670514][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1804.670516][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1804.670519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670523][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1804.670527][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1804.670532][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1804.670535][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1804.670540][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1804.670544][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1804.670549][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1804.670558][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1804.670562][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1804.670567][ C3] ksys_unshare (kernel/fork.c:3121) [ 1804.670571][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1804.670574][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1804.670578][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1804.670580][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1804.670584][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1804.670590][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1804.670594][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1804.670599][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1804.670602][ C3] RIP: 0033:0x7f439756d93b [ 1804.670605][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1804.670608][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1804.670611][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1804.670613][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1804.670615][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1804.670617][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1804.670618][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1808.669130][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1808.669136][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1808.669140][ C2] softirqs last disabled at (0): 0x0 | [ 1808.669151][ C2] Tainted: [L]=SOFTLOCKUP [ 1808.669153][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1808.669155][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1808.669161][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1808.669165][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1808.669167][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1808.669169][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1808.669171][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1808.669173][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1808.669175][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1808.669177][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1808.669179][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1808.669183][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1808.669185][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1808.669187][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1808.669188][ C2] PKRU: 55555554 [ 1808.669190][ C2] Call Trace: [ 1808.669193][ C2] [ 1808.669196][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1808.669201][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1808.669205][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1808.669208][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1808.669215][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1808.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1808.669225][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1808.669228][ C2] ? xa_store (lib/xarray.c:1734) [ 1808.669234][ C2] xa_store (lib/xarray.c:1734) [ 1808.669239][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1808.669243][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1808.669249][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1808.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1808.669254][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1808.669259][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1808.669263][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1808.669269][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1808.669272][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1808.669277][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1808.669282][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1808.669287][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1808.669294][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1808.669298][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1808.669303][ C2] ksys_unshare (kernel/fork.c:3121) [ 1808.669307][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1808.669311][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1808.669315][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1808.669318][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1808.669322][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1808.669328][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1808.669332][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1808.669337][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1808.669341][ C2] RIP: 0033:0x7f439756d93b [ 1808.669345][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1808.669348][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1808.669351][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1808.669353][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1808.669355][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1808.669357][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1808.669358][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1828.216527][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1828.216966][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1828.217204][ C1] NMI backtrace for cpu 1 | [ 1828.217225][ C1] Tainted: [L]=SOFTLOCKUP [ 1828.217227][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1828.217230][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1828.217249][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1828.217252][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1828.217257][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1828.217259][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1828.217261][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1828.217263][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1828.217265][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1828.217267][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1828.217269][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1828.217272][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1828.217274][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1828.217276][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1828.217277][ C1] PKRU: 55555554 [ 1828.217279][ C1] Call Trace: [ 1828.217280][ C1] [ 1828.217283][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1828.217287][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1828.217293][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1828.217297][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1828.217305][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1828.217308][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1828.217311][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1828.217314][ C1] ? xa_store (lib/xarray.c:1734) [ 1828.217321][ C1] xa_store (lib/xarray.c:1734) [ 1828.217325][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1828.217330][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1828.217335][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1828.217338][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1828.217340][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.217347][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.217350][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1828.217358][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1828.217362][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1828.217367][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1828.217373][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1828.217377][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1828.217387][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1828.217390][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1828.217398][ C1] ksys_unshare (kernel/fork.c:3121) [ 1828.217404][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1828.217408][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1828.217413][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1828.217416][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1828.217421][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1828.217428][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1828.217432][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1828.217439][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1828.217443][ C1] RIP: 0033:0x7f439756d93b [ 1828.217448][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1828.217450][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1828.217453][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1828.217455][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1828.217457][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1828.217459][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1828.217461][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1828.217459][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1828.217461][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1828.217466][ C1] | [ 1828.218207][ C3] Tainted: [L]=SOFTLOCKUP [ 1828.218209][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1828.218211][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1828.218217][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1828.218223][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1828.218226][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1828.218229][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1828.218231][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1828.218233][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1828.218235][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1828.218237][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1828.218239][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1828.218243][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1828.218245][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1828.218246][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1828.218248][ C3] PKRU: 55555554 [ 1828.218249][ C3] Call Trace: [ 1828.218251][ C3] [ 1828.218252][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1828.218257][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1828.218261][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1828.218265][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1828.218268][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1828.218273][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1828.218276][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1828.218280][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1828.218283][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1828.218286][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1828.218289][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1828.218291][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1828.218295][ C3] ? xas_alloc (lib/xarray.c:378) [ 1828.218300][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1828.218304][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1828.218307][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1828.218311][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1828.218317][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1828.218323][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1828.218328][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218332][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1828.218338][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1828.218343][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218347][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1828.218350][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1828.218353][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1828.218356][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1828.218359][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1828.218365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1828.218368][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1828.218371][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1828.218376][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1828.218380][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1828.218384][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1828.218386][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1828.218390][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218393][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1828.218397][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1828.218402][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1828.218405][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1828.218409][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1828.218413][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218417][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1828.218422][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1828.218425][ C3] handle_softirqs (kernel/softirq.c:579) [ 1828.218431][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1828.218434][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1828.218438][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1828.218441][ C3] [ 1828.218442][ C3] [ 1828.218444][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1828.218447][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1828.218450][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1828.218453][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1828.218456][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1828.218457][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1828.218459][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1828.218461][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1828.218462][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1828.218466][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1828.218472][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1828.218477][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1828.218482][ C3] ? xas_alloc (lib/xarray.c:378) [ 1828.218487][ C3] ? xas_alloc (lib/xarray.c:378) [ 1828.218491][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1828.218495][ C3] ? xas_alloc (lib/xarray.c:378) [ 1828.218498][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1828.218503][ C3] xas_alloc (lib/xarray.c:378) [ 1828.218507][ C3] xas_create (lib/xarray.c:685) [ 1828.218513][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1828.218517][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1828.218521][ C3] __xa_store (lib/xarray.c:1703) [ 1828.218525][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1828.218529][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1828.218532][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1828.218535][ C3] ? xa_store (lib/xarray.c:1734) [ 1828.218540][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1828.218544][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1828.218547][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1828.218551][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1828.218554][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1828.218557][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218561][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1828.218564][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1828.218569][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1828.218573][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1828.218578][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1828.218581][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1828.218586][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1828.218593][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1828.218597][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1828.218602][ C3] ksys_unshare (kernel/fork.c:3121) [ 1828.218607][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1828.218610][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1828.218614][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1828.218616][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1828.218620][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1828.218626][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1828.218630][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1828.218634][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1828.218637][ C3] RIP: 0033:0x7f439756d93b [ 1828.218642][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1828.218644][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1828.218647][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1828.218648][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1828.218650][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1828.218652][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1828.218653][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1832.656142][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1832.656149][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1832.656153][ C0] softirqs last disabled at (0): 0x0 | [ 1832.656164][ C0] Tainted: [L]=SOFTLOCKUP [ 1832.656166][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1832.656168][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1832.656175][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1832.656178][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1832.656181][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1832.656183][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1832.656185][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1832.656187][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1832.656190][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1832.656192][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1832.656196][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1832.656200][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1832.656202][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1832.656204][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1832.656206][ C0] PKRU: 55555554 [ 1832.656207][ C0] Call Trace: [ 1832.656211][ C0] [ 1832.656214][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1832.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1832.656224][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1832.656227][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1832.656234][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1832.656238][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1832.656241][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1832.656244][ C0] ? xa_store (lib/xarray.c:1734) [ 1832.656250][ C0] xa_store (lib/xarray.c:1734) [ 1832.656254][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1832.656259][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1832.656264][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1832.656267][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1832.656270][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1832.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1832.656279][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1832.656285][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1832.656289][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1832.656294][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1832.656299][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1832.656304][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1832.656312][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1832.656317][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1832.656322][ C0] ksys_unshare (kernel/fork.c:3121) [ 1832.656327][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1832.656330][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1832.656334][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1832.656337][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1832.656341][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1832.656347][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1832.656351][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1832.656356][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1832.656360][ C0] RIP: 0033:0x7f439756d93b [ 1832.656364][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1832.656367][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1832.656371][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1832.656373][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1832.656374][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1832.656376][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1832.656378][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1836.669134][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1836.669142][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1836.669146][ C2] softirqs last disabled at (0): 0x0 | [ 1836.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 1836.669160][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1836.669162][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1836.669170][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1836.669174][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1836.669177][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1836.669179][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1836.669181][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1836.669183][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1836.669185][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1836.669187][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1836.669190][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1836.669194][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1836.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1836.669198][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1836.669200][ C2] PKRU: 55555554 [ 1836.669201][ C2] Call Trace: [ 1836.669205][ C2] [ 1836.669208][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1836.669212][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1836.669225][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1836.669229][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1836.669236][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1836.669239][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1836.669242][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1836.669245][ C2] ? xa_store (lib/xarray.c:1734) [ 1836.669251][ C2] xa_store (lib/xarray.c:1734) [ 1836.669256][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1836.669261][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1836.669266][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1836.669269][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1836.669272][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1836.669278][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1836.669281][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1836.669288][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1836.669292][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1836.669297][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1836.669304][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1836.669308][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1836.669316][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1836.669320][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1836.669326][ C2] ksys_unshare (kernel/fork.c:3121) [ 1836.669331][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1836.669334][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1836.669339][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1836.669342][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1836.669345][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1836.669352][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1836.669356][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1836.669361][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1836.669365][ C2] RIP: 0033:0x7f439756d93b [ 1836.669370][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1836.669373][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1836.669376][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1836.669378][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1836.669380][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1836.669382][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1836.669384][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1852.669144][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1852.669154][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1852.669158][ C1] softirqs last disabled at (0): 0x0 | [ 1852.669179][ C1] Tainted: [L]=SOFTLOCKUP [ 1852.669181][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1852.669184][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 1852.669192][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 1852.669196][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 1852.669199][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1852.669201][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1852.669203][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1852.669206][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1852.669208][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1852.669210][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1852.669213][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1852.669217][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1852.669219][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1852.669220][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1852.669222][ C1] PKRU: 55555554 [ 1852.669224][ C1] Call Trace: [ 1852.669229][ C1] [ 1852.669230][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1852.669242][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1852.669246][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1852.669252][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1852.669256][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1852.669264][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1852.669268][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1852.669271][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1852.669274][ C1] ? xa_store (lib/xarray.c:1734) [ 1852.669281][ C1] xa_store (lib/xarray.c:1734) [ 1852.669286][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1852.669292][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1852.669297][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1852.669300][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1852.669303][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.669310][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.669314][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1852.669322][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1852.669326][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1852.669332][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1852.669340][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1852.669345][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1852.669354][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1852.669358][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1852.669365][ C1] ksys_unshare (kernel/fork.c:3121) [ 1852.669370][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1852.669374][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1852.669379][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1852.669383][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1852.669386][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1852.669394][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1852.669398][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1852.669404][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1852.669410][ C1] RIP: 0033:0x7f439756d93b [ 1852.669415][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1852.669418][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1852.669421][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1852.669424][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1852.669426][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1852.669428][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1852.669430][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1852.670141][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1852.670149][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1852.670153][ C3] softirqs last disabled at (0): 0x0 | [ 1852.670164][ C3] Tainted: [L]=SOFTLOCKUP [ 1852.670165][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1852.670167][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1852.670174][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 1852.670177][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1852.670180][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1852.670182][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1852.670184][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1852.670186][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1852.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1852.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1852.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1852.670196][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1852.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1852.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1852.670201][ C3] PKRU: 55555554 [ 1852.670202][ C3] Call Trace: [ 1852.670206][ C3] [ 1852.670208][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1852.670213][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1852.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1852.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1852.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1852.670230][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1852.670233][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1852.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1852.670241][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1852.670244][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1852.670246][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1852.670249][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1852.670252][ C3] ? xas_alloc (lib/xarray.c:378) [ 1852.670258][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1852.670262][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1852.670265][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1852.670269][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1852.670274][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1852.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1852.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670288][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1852.670294][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1852.670299][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670302][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1852.670305][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1852.670308][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1852.670312][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1852.670315][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1852.670320][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1852.670323][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1852.670326][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1852.670331][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1852.670335][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1852.670338][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1852.670341][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1852.670344][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670347][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1852.670352][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1852.670356][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1852.670359][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1852.670364][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1852.670368][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670371][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1852.670376][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1852.670381][ C3] handle_softirqs (kernel/softirq.c:579) [ 1852.670386][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1852.670390][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1852.670393][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1852.670397][ C3] [ 1852.670398][ C3] [ 1852.670400][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1852.670404][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1852.670408][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1852.670410][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1852.670413][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1852.670415][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1852.670417][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1852.670419][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1852.670422][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1852.670426][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1852.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1852.670437][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1852.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 1852.670445][ C3] ? xas_alloc (lib/xarray.c:378) [ 1852.670448][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1852.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 1852.670455][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1852.670460][ C3] xas_alloc (lib/xarray.c:378) [ 1852.670464][ C3] xas_create (lib/xarray.c:685) [ 1852.670470][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1852.670475][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1852.670478][ C3] __xa_store (lib/xarray.c:1703) [ 1852.670483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1852.670487][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1852.670490][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1852.670493][ C3] ? xa_store (lib/xarray.c:1734) [ 1852.670498][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1852.670502][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1852.670505][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1852.670510][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1852.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1852.670516][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670520][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1852.670523][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1852.670528][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1852.670532][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1852.670537][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1852.670540][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1852.670545][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1852.670553][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1852.670557][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1852.670562][ C3] ksys_unshare (kernel/fork.c:3121) [ 1852.670567][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1852.670570][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1852.670574][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1852.670576][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1852.670580][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1852.670586][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1852.670590][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1852.670595][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1852.670599][ C3] RIP: 0033:0x7f439756d93b [ 1852.670603][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1852.670605][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1852.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1852.670610][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1852.670612][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1852.670614][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1852.670617][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1860.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1860.656146][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1860.656150][ C0] softirqs last disabled at (0): 0x0 | [ 1860.656163][ C0] Tainted: [L]=SOFTLOCKUP [ 1860.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1860.656167][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1860.656175][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1860.656178][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1860.656181][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1860.656184][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1860.656186][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1860.656188][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1860.656190][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1860.656192][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1860.656195][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1860.656200][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1860.656202][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1860.656203][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1860.656205][ C0] PKRU: 55555554 [ 1860.656207][ C0] Call Trace: [ 1860.656211][ C0] [ 1860.656215][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1860.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1860.656224][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1860.656228][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1860.656234][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1860.656239][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1860.656242][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1860.656245][ C0] ? xa_store (lib/xarray.c:1734) [ 1860.656251][ C0] xa_store (lib/xarray.c:1734) [ 1860.656256][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1860.656262][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1860.656268][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1860.656271][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1860.656274][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1860.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1860.656284][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1860.656291][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1860.656295][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1860.656300][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1860.656307][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1860.656312][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1860.656321][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1860.656325][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1860.656331][ C0] ksys_unshare (kernel/fork.c:3121) [ 1860.656336][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1860.656340][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1860.656344][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1860.656348][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1860.656351][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1860.656358][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1860.656362][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1860.656367][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1860.656372][ C0] RIP: 0033:0x7f439756d93b [ 1860.656377][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1860.656380][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1860.656383][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1860.656385][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1860.656388][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1860.656390][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1860.656392][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1864.669136][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1864.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1864.669148][ C2] softirqs last disabled at (0): 0x0 | [ 1864.669159][ C2] Tainted: [L]=SOFTLOCKUP [ 1864.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1864.669163][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1864.669171][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1864.669174][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1864.669177][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1864.669179][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1864.669182][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1864.669183][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1864.669185][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1864.669187][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1864.669190][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1864.669194][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1864.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1864.669198][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1864.669200][ C2] PKRU: 55555554 [ 1864.669202][ C2] Call Trace: [ 1864.669206][ C2] [ 1864.669209][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1864.669213][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1864.669218][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1864.669222][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1864.669230][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1864.669234][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1864.669237][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1864.669240][ C2] ? xa_store (lib/xarray.c:1734) [ 1864.669246][ C2] xa_store (lib/xarray.c:1734) [ 1864.669251][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1864.669256][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1864.669262][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1864.669265][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1864.669268][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1864.669273][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1864.669277][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1864.669284][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1864.669288][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1864.669293][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1864.669299][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1864.669304][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1864.669312][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1864.669316][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1864.669322][ C2] ksys_unshare (kernel/fork.c:3121) [ 1864.669327][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1864.669331][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1864.669336][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1864.669339][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1864.669343][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1864.669349][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1864.669353][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1864.669359][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1864.669363][ C2] RIP: 0033:0x7f439756d93b [ 1864.669368][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1864.669371][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1864.669374][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1864.669376][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1864.669378][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1864.669380][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1864.669382][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1880.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1880.669152][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1880.669156][ C1] softirqs last disabled at (0): 0x0 | [ 1880.669170][ C1] Tainted: [L]=SOFTLOCKUP [ 1880.669171][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1880.669174][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1880.669184][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1880.669188][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1880.669191][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1880.669194][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1880.669196][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1880.669198][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1880.669200][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1880.669201][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1880.669204][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1880.669208][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1880.669210][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1880.669212][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1880.669214][ C1] PKRU: 55555554 [ 1880.669215][ C1] Call Trace: [ 1880.669219][ C1] [ 1880.669222][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1880.669226][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1880.669232][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1880.669236][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1880.669244][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1880.669247][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1880.669250][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1880.669253][ C1] ? xa_store (lib/xarray.c:1734) [ 1880.669260][ C1] xa_store (lib/xarray.c:1734) [ 1880.669265][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1880.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1880.669277][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1880.669279][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1880.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.669289][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.669293][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1880.669301][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1880.669305][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1880.669310][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1880.669317][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1880.669321][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1880.669331][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1880.669335][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1880.669342][ C1] ksys_unshare (kernel/fork.c:3121) [ 1880.669347][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1880.669350][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1880.669356][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1880.669359][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1880.669363][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1880.669370][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1880.669374][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1880.669380][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1880.669385][ C1] RIP: 0033:0x7f439756d93b [ 1880.669390][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1880.669392][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1880.669396][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1880.669398][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1880.669400][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1880.669402][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1880.669404][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1880.670131][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1880.670140][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1880.670143][ C3] softirqs last disabled at (0): 0x0 | [ 1880.670155][ C3] Tainted: [L]=SOFTLOCKUP [ 1880.670156][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1880.670158][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 1880.670164][ C3] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 1880.670167][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000246 [ 1880.670170][ C3] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 1880.670172][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1880.670174][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1880.670176][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1880.670178][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1880.670180][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1880.670183][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1880.670187][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1880.670189][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1880.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1880.670199][ C3] PKRU: 55555554 [ 1880.670201][ C3] Call Trace: [ 1880.670204][ C3] [ 1880.670208][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1880.670215][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1880.670219][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1880.670223][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1880.670227][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1880.670232][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1880.670236][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1880.670239][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1880.670244][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1880.670247][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1880.670250][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1880.670253][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1880.670255][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1880.670258][ C3] ? xas_alloc (lib/xarray.c:378) [ 1880.670264][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1880.670268][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1880.670271][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1880.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1880.670280][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1880.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1880.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670295][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1880.670301][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1880.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1880.670312][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1880.670316][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1880.670319][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1880.670322][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1880.670328][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1880.670330][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1880.670333][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1880.670338][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1880.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1880.670346][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1880.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1880.670352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1880.670359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1880.670364][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1880.670367][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1880.670372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1880.670376][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670382][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1880.670387][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1880.670391][ C3] handle_softirqs (kernel/softirq.c:579) [ 1880.670397][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1880.670401][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1880.670405][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1880.670409][ C3] [ 1880.670410][ C3] [ 1880.670412][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1880.670416][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1880.670420][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1880.670423][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1880.670426][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1880.670428][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1880.670429][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1880.670431][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1880.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1880.670437][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1880.670443][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1880.670448][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1880.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 1880.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 1880.670459][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1880.670464][ C3] ? xas_alloc (lib/xarray.c:378) [ 1880.670466][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1880.670472][ C3] xas_alloc (lib/xarray.c:378) [ 1880.670476][ C3] xas_create (lib/xarray.c:685) [ 1880.670482][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1880.670487][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1880.670491][ C3] __xa_store (lib/xarray.c:1703) [ 1880.670495][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1880.670500][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1880.670503][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1880.670505][ C3] ? xa_store (lib/xarray.c:1734) [ 1880.670510][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1880.670515][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1880.670518][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1880.670523][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1880.670525][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1880.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670532][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1880.670536][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1880.670541][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1880.670545][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1880.670549][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1880.670553][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1880.670558][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1880.670567][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1880.670571][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1880.670577][ C3] ksys_unshare (kernel/fork.c:3121) [ 1880.670581][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1880.670584][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1880.670588][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1880.670591][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1880.670594][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1880.670601][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1880.670604][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1880.670609][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1880.670613][ C3] RIP: 0033:0x7f439756d93b [ 1880.670616][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1880.670619][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1880.670622][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1880.670624][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1880.670625][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1880.670627][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1880.670629][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1888.656144][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1888.656153][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1888.656157][ C0] softirqs last disabled at (0): 0x0 | [ 1888.656171][ C0] Tainted: [L]=SOFTLOCKUP [ 1888.656173][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1888.656175][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1888.656184][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1888.656188][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1888.656191][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1888.656194][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1888.656196][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1888.656198][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1888.656200][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1888.656202][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1888.656205][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1888.656210][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1888.656212][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1888.656213][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1888.656215][ C0] PKRU: 55555554 [ 1888.656216][ C0] Call Trace: [ 1888.656221][ C0] [ 1888.656235][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1888.656240][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1888.656245][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1888.656250][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1888.656258][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1888.656263][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1888.656266][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1888.656269][ C0] ? xa_store (lib/xarray.c:1734) [ 1888.656276][ C0] xa_store (lib/xarray.c:1734) [ 1888.656281][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1888.656287][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1888.656292][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1888.656295][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1888.656298][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1888.656305][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1888.656309][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1888.656317][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1888.656321][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1888.656326][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1888.656333][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1888.656338][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1888.656348][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1888.656352][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1888.656359][ C0] ksys_unshare (kernel/fork.c:3121) [ 1888.656364][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1888.656367][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1888.656372][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1888.656376][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1888.656380][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1888.656387][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1888.656391][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1888.656397][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1888.656402][ C0] RIP: 0033:0x7f439756d93b [ 1888.656408][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1888.656411][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1888.656414][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1888.656417][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1888.656419][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1888.656421][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1888.656423][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1892.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1892.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1892.669147][ C2] softirqs last disabled at (0): 0x0 | [ 1892.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 1892.669160][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1892.669162][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1892.669170][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1892.669173][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1892.669176][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1892.669178][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1892.669181][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1892.669182][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1892.669185][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1892.669186][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1892.669189][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1892.669193][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1892.669195][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1892.669197][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1892.669198][ C2] PKRU: 55555554 [ 1892.669200][ C2] Call Trace: [ 1892.669203][ C2] [ 1892.669208][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1892.669212][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1892.669218][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1892.669222][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1892.669228][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1892.669232][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1892.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1892.669238][ C2] ? xa_store (lib/xarray.c:1734) [ 1892.669245][ C2] xa_store (lib/xarray.c:1734) [ 1892.669249][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1892.669255][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1892.669260][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1892.669263][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1892.669266][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1892.669272][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1892.669275][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1892.669282][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1892.669287][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1892.669291][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1892.669298][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1892.669302][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1892.669311][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1892.669314][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1892.669320][ C2] ksys_unshare (kernel/fork.c:3121) [ 1892.669325][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1892.669329][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1892.669333][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1892.669336][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1892.669340][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1892.669346][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1892.669350][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1892.669355][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1892.669360][ C2] RIP: 0033:0x7f439756d93b [ 1892.669366][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1892.669369][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1892.669372][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1892.669374][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1892.669376][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1892.669378][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1892.669380][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1906.230456][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1906.230728][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1906.231140][ C1] NMI backtrace for cpu 1 | [ 1906.231161][ C1] Tainted: [L]=SOFTLOCKUP [ 1906.231163][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1906.231166][ C1] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 1906.231176][ C1] Code: ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 <49> 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e All code ======== 0: ff (bad) 1: ff (bad) 2: 7f ff jg 0x3 4: ff 48 39 decl 0x39(%rax) 7: c7 (bad) 8: 76 dd jbe 0xffffffffffffffe7 a: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 f: 48 89 fd mov %rdi,%rbp 12: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 19: fc ff df 1c: 4d 89 d1 mov %r10,%r9 1f: 48 c1 ed 03 shr $0x3,%rbp 23: 49 c1 e9 03 shr $0x3,%r9 27: 48 01 c5 add %rax,%rbp 2a:* 49 01 c1 add %rax,%r9 <-- trapping instruction 2d: 48 89 e8 mov %rbp,%rax 30: 49 8d 59 01 lea 0x1(%r9),%rbx 34: 48 89 da mov %rbx,%rdx 37: 48 29 ea sub %rbp,%rdx 3a: 48 83 fa 10 cmp $0x10,%rdx 3e: 0f .byte 0xf 3f: 8e .byte 0x8e Code starting with the faulting instruction =========================================== 0: 49 01 c1 add %rax,%r9 3: 48 89 e8 mov %rbp,%rax 6: 49 8d 59 01 lea 0x1(%r9),%rbx a: 48 89 da mov %rbx,%rdx d: 48 29 ea sub %rbp,%rdx 10: 48 83 fa 10 cmp $0x10,%rdx 14: 0f .byte 0xf 15: 8e .byte 0x8e [ 1906.231179][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000282 [ 1906.231184][ C1] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1906.231186][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1906.231189][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: 1ffffffff77dcb80 [ 1906.231191][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1906.231193][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1906.231195][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1906.231197][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1906.231201][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1906.231203][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1906.231205][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1906.231206][ C1] PKRU: 55555554 [ 1906.231208][ C1] Call Trace: [ 1906.231212][ C1] [ 1906.231216][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1906.231225][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1906.231229][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1906.231234][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1906.231238][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1906.231246][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1906.231249][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1906.231252][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1906.231255][ C1] ? xa_store (lib/xarray.c:1734) [ 1906.231262][ C1] xa_store (lib/xarray.c:1734) [ 1906.231267][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1906.231273][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1906.231278][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1906.231281][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1906.231284][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.231290][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.231294][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1906.231302][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1906.231306][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1906.231311][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1906.231318][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1906.231323][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1906.231333][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1906.231338][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1906.231344][ C1] ksys_unshare (kernel/fork.c:3121) [ 1906.231352][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1906.231356][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1906.231361][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1906.231364][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1906.231368][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1906.231375][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1906.231379][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1906.231385][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1906.231390][ C1] RIP: 0033:0x7f439756d93b [ 1906.231396][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1906.231399][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1906.231402][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1906.231404][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1906.231407][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1906.231409][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1906.231411][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1906.231409][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1906.231411][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1906.231416][ C1] | [ 1906.232143][ C3] Tainted: [L]=SOFTLOCKUP [ 1906.232144][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1906.232146][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1906.232154][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1906.232157][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1906.232161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1906.232163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1906.232165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1906.232167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1906.232169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1906.232172][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1906.232174][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1906.232178][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1906.232180][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1906.232182][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1906.232183][ C3] PKRU: 55555554 [ 1906.232185][ C3] Call Trace: [ 1906.232187][ C3] [ 1906.232188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1906.232193][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1906.232197][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1906.232201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1906.232204][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1906.232209][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1906.232213][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1906.232217][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1906.232220][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1906.232223][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1906.232226][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1906.232228][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1906.232231][ C3] ? xas_alloc (lib/xarray.c:378) [ 1906.232237][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1906.232241][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1906.232243][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1906.232246][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1906.232252][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1906.232255][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1906.232261][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232265][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1906.232271][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1906.232276][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232279][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1906.232282][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1906.232285][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1906.232288][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1906.232291][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1906.232297][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1906.232300][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1906.232303][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1906.232307][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1906.232311][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1906.232314][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1906.232317][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1906.232321][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232324][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1906.232328][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1906.232333][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1906.232335][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1906.232340][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1906.232345][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232348][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1906.232353][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1906.232357][ C3] handle_softirqs (kernel/softirq.c:579) [ 1906.232362][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1906.232366][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1906.232369][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1906.232373][ C3] [ 1906.232374][ C3] [ 1906.232375][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1906.232379][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1906.232382][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1906.232385][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1906.232387][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1906.232389][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1906.232390][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1906.232392][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1906.232394][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1906.232398][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1906.232403][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1906.232408][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1906.232412][ C3] ? xas_alloc (lib/xarray.c:378) [ 1906.232416][ C3] ? xas_alloc (lib/xarray.c:378) [ 1906.232419][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1906.232423][ C3] ? xas_alloc (lib/xarray.c:378) [ 1906.232426][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1906.232431][ C3] xas_alloc (lib/xarray.c:378) [ 1906.232435][ C3] xas_create (lib/xarray.c:685) [ 1906.232441][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1906.232445][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1906.232449][ C3] __xa_store (lib/xarray.c:1703) [ 1906.232453][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1906.232457][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1906.232460][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1906.232463][ C3] ? xa_store (lib/xarray.c:1734) [ 1906.232468][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1906.232472][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1906.232475][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1906.232480][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1906.232483][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1906.232485][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232489][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1906.232493][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1906.232498][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1906.232502][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1906.232506][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1906.232510][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1906.232514][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1906.232521][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1906.232525][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1906.232530][ C3] ksys_unshare (kernel/fork.c:3121) [ 1906.232535][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1906.232538][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1906.232542][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1906.232544][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1906.232548][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1906.232554][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1906.232558][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1906.232563][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1906.232566][ C3] RIP: 0033:0x7f439756d93b [ 1906.232570][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1906.232573][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1906.232576][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1906.232578][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1906.232579][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1906.232581][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1906.232583][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1916.656145][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1916.656155][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1916.656159][ C0] softirqs last disabled at (0): 0x0 | [ 1916.656173][ C0] Tainted: [L]=SOFTLOCKUP [ 1916.656175][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1916.656178][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1916.656188][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1916.656192][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1916.656196][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1916.656198][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1916.656201][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1916.656203][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1916.656205][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1916.656207][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1916.656210][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1916.656214][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1916.656216][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1916.656218][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1916.656220][ C0] PKRU: 55555554 [ 1916.656221][ C0] Call Trace: [ 1916.656226][ C0] [ 1916.656231][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1916.656235][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1916.656241][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1916.656246][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1916.656254][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1916.656258][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1916.656261][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1916.656264][ C0] ? xa_store (lib/xarray.c:1734) [ 1916.656272][ C0] xa_store (lib/xarray.c:1734) [ 1916.656277][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1916.656283][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1916.656288][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1916.656292][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1916.656295][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1916.656302][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1916.656306][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1916.656313][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1916.656317][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1916.656322][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1916.656329][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1916.656334][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1916.656344][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1916.656348][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1916.656355][ C0] ksys_unshare (kernel/fork.c:3121) [ 1916.656360][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1916.656363][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1916.656368][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1916.656372][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1916.656375][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1916.656383][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1916.656387][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1916.656393][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1916.656399][ C0] RIP: 0033:0x7f439756d93b [ 1916.656405][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1916.656407][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1916.656411][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1916.656413][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1916.656415][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1916.656417][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1916.656419][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1920.669134][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1920.669142][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1920.669146][ C2] softirqs last disabled at (0): 0x0 | [ 1920.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 1920.669160][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1920.669162][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 1920.669168][ C2] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 1920.669172][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000246 [ 1920.669175][ C2] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 1920.669177][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1920.669179][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1920.669182][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1920.669184][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1920.669186][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1920.669188][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1920.669192][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1920.669194][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1920.669196][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1920.669198][ C2] PKRU: 55555554 [ 1920.669200][ C2] Call Trace: [ 1920.669203][ C2] [ 1920.669207][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1920.669215][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1920.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1920.669223][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1920.669227][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1920.669234][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1920.669237][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1920.669240][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1920.669243][ C2] ? xa_store (lib/xarray.c:1734) [ 1920.669249][ C2] xa_store (lib/xarray.c:1734) [ 1920.669254][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1920.669259][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1920.669264][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1920.669267][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1920.669270][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1920.669276][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1920.669279][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1920.669286][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1920.669290][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1920.669295][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1920.669301][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1920.669306][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1920.669314][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1920.669317][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1920.669323][ C2] ksys_unshare (kernel/fork.c:3121) [ 1920.669328][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1920.669331][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1920.669336][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1920.669339][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1920.669343][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1920.669349][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1920.669353][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1920.669359][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1920.669363][ C2] RIP: 0033:0x7f439756d93b [ 1920.669368][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1920.669370][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1920.669373][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1920.669376][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1920.669377][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1920.669379][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1920.669381][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1932.669153][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1932.669163][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1932.669167][ C1] softirqs last disabled at (0): 0x0 | [ 1932.669182][ C1] Tainted: [L]=SOFTLOCKUP [ 1932.669183][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1932.669186][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1932.669197][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1932.669200][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1932.669204][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1932.669206][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1932.669208][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1932.669210][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1932.669213][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1932.669215][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1932.669218][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1932.669222][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1932.669224][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1932.669225][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1932.669227][ C1] PKRU: 55555554 [ 1932.669229][ C1] Call Trace: [ 1932.669237][ C1] [ 1932.669241][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1932.669245][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1932.669251][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1932.669255][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1932.669263][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1932.669267][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1932.669270][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1932.669273][ C1] ? xa_store (lib/xarray.c:1734) [ 1932.669280][ C1] xa_store (lib/xarray.c:1734) [ 1932.669287][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1932.669293][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1932.669298][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1932.669301][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1932.669304][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.669311][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.669315][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1932.669323][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1932.669327][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1932.669332][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1932.669340][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1932.669345][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1932.669355][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1932.669359][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1932.669366][ C1] ksys_unshare (kernel/fork.c:3121) [ 1932.669371][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1932.669375][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1932.669380][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1932.669383][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1932.669387][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1932.669395][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1932.669399][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1932.669405][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1932.669410][ C1] RIP: 0033:0x7f439756d93b [ 1932.669415][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1932.669418][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1932.669422][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1932.669424][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1932.669426][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1932.669428][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1932.669430][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1932.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1932.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1932.670148][ C3] softirqs last disabled at (0): 0x0 | [ 1932.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 1932.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1932.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1932.670173][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1932.670175][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1932.670178][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1932.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1932.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1932.670185][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1932.670187][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1932.670189][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1932.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1932.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1932.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1932.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1932.670201][ C3] PKRU: 55555554 [ 1932.670202][ C3] Call Trace: [ 1932.670206][ C3] [ 1932.670207][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1932.670214][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1932.670219][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1932.670222][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1932.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1932.670231][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1932.670234][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1932.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1932.670242][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1932.670245][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1932.670248][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1932.670251][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1932.670254][ C3] ? xas_alloc (lib/xarray.c:378) [ 1932.670259][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1932.670264][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1932.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1932.670270][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1932.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1932.670280][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1932.670285][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670290][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1932.670296][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1932.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1932.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1932.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1932.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1932.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1932.670324][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1932.670327][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1932.670330][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1932.670334][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1932.670339][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1932.670342][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1932.670345][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1932.670348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670352][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1932.670356][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1932.670361][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1932.670364][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1932.670369][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1932.670373][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670377][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1932.670382][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1932.670386][ C3] handle_softirqs (kernel/softirq.c:579) [ 1932.670392][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1932.670396][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1932.670400][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1932.670404][ C3] [ 1932.670405][ C3] [ 1932.670407][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1932.670412][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1932.670415][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1932.670418][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1932.670421][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1932.670423][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1932.670425][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1932.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1932.670429][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1932.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1932.670438][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1932.670444][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1932.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 1932.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 1932.670455][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1932.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 1932.670462][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1932.670467][ C3] xas_alloc (lib/xarray.c:378) [ 1932.670472][ C3] xas_create (lib/xarray.c:685) [ 1932.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1932.670482][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1932.670486][ C3] __xa_store (lib/xarray.c:1703) [ 1932.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1932.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1932.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1932.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 1932.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1932.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1932.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1932.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1932.670521][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1932.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1932.670531][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1932.670536][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1932.670540][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1932.670545][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1932.670549][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1932.670553][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1932.670561][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1932.670565][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1932.670570][ C3] ksys_unshare (kernel/fork.c:3121) [ 1932.670574][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1932.670578][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1932.670581][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1932.670584][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1932.670588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1932.670594][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1932.670598][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1932.670604][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1932.670608][ C3] RIP: 0033:0x7f439756d93b [ 1932.670612][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1932.670614][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1932.670617][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1932.670619][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1932.670621][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1932.670623][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1932.670625][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1944.656143][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1944.656153][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1944.656157][ C0] softirqs last disabled at (0): 0x0 | [ 1944.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 1944.656172][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1944.656175][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1944.656185][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1944.656188][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1944.656192][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1944.656194][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1944.656196][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1944.656198][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1944.656201][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1944.656203][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1944.656205][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1944.656211][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1944.656213][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1944.656215][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1944.656217][ C0] PKRU: 55555554 [ 1944.656219][ C0] Call Trace: [ 1944.656223][ C0] [ 1944.656228][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1944.656232][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1944.656238][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1944.656242][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1944.656250][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1944.656255][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1944.656258][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1944.656261][ C0] ? xa_store (lib/xarray.c:1734) [ 1944.656268][ C0] xa_store (lib/xarray.c:1734) [ 1944.656273][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1944.656279][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1944.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1944.656287][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1944.656291][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1944.656297][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1944.656301][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1944.656309][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1944.656313][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1944.656318][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1944.656325][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1944.656330][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1944.656339][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1944.656343][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1944.656350][ C0] ksys_unshare (kernel/fork.c:3121) [ 1944.656354][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1944.656358][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1944.656363][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1944.656366][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1944.656370][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1944.656377][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1944.656381][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1944.656387][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1944.656393][ C0] RIP: 0033:0x7f439756d93b [ 1944.656406][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1944.656409][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1944.656413][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1944.656415][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1944.656417][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1944.656419][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1944.656421][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1948.669136][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1948.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1948.669148][ C2] softirqs last disabled at (0): 0x0 | [ 1948.669161][ C2] Tainted: [L]=SOFTLOCKUP [ 1948.669162][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1948.669165][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1948.669173][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1948.669176][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1948.669179][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1948.669181][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1948.669183][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1948.669185][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1948.669187][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1948.669189][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1948.669192][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1948.669196][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1948.669198][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1948.669200][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1948.669202][ C2] PKRU: 55555554 [ 1948.669203][ C2] Call Trace: [ 1948.669207][ C2] [ 1948.669211][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1948.669215][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1948.669221][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1948.669225][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1948.669231][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1948.669235][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1948.669238][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1948.669241][ C2] ? xa_store (lib/xarray.c:1734) [ 1948.669248][ C2] xa_store (lib/xarray.c:1734) [ 1948.669252][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1948.669258][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1948.669263][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1948.669266][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1948.669269][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1948.669275][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1948.669279][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1948.669285][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1948.669289][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1948.669294][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1948.669300][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1948.669305][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1948.669314][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1948.669318][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1948.669323][ C2] ksys_unshare (kernel/fork.c:3121) [ 1948.669328][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1948.669332][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1948.669337][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1948.669340][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1948.669343][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1948.669350][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1948.669354][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1948.669359][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1948.669364][ C2] RIP: 0033:0x7f439756d93b [ 1948.669369][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1948.669371][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1948.669374][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1948.669376][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1948.669378][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1948.669380][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1948.669382][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1960.669144][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1960.669155][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1960.669159][ C1] softirqs last disabled at (0): 0x0 | [ 1960.669173][ C1] Tainted: [L]=SOFTLOCKUP [ 1960.669175][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1960.669177][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 1960.669184][ C1] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 1960.669188][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000246 [ 1960.669191][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1960.669193][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1960.669195][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1960.669198][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1960.669200][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1960.669202][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1960.669205][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1960.669210][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1960.669213][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1960.669214][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1960.669216][ C1] PKRU: 55555554 [ 1960.669217][ C1] Call Trace: [ 1960.669222][ C1] [ 1960.669224][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 1960.669236][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1960.669239][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1960.669245][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1960.669249][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1960.669257][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1960.669261][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1960.669264][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1960.669267][ C1] ? xa_store (lib/xarray.c:1734) [ 1960.669274][ C1] xa_store (lib/xarray.c:1734) [ 1960.669279][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1960.669285][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1960.669291][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1960.669294][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1960.669297][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.669304][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.669307][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1960.669315][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1960.669319][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1960.669324][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1960.669331][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1960.669336][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1960.669346][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1960.669350][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1960.669357][ C1] ksys_unshare (kernel/fork.c:3121) [ 1960.669362][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1960.669365][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1960.669375][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1960.669379][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1960.669382][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1960.669390][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1960.669394][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1960.669400][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1960.669405][ C1] RIP: 0033:0x7f439756d93b [ 1960.669411][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1960.669414][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1960.669418][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1960.669420][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1960.669422][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1960.669424][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1960.669426][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1960.670131][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1960.670139][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1960.670142][ C3] softirqs last disabled at (0): 0x0 | [ 1960.670154][ C3] Tainted: [L]=SOFTLOCKUP [ 1960.670155][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1960.670157][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1960.670165][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1960.670168][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1960.670171][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1960.670173][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1960.670175][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1960.670177][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1960.670179][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1960.670181][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1960.670184][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1960.670187][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1960.670189][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1960.670191][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1960.670193][ C3] PKRU: 55555554 [ 1960.670194][ C3] Call Trace: [ 1960.670198][ C3] [ 1960.670199][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1960.670204][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1960.670210][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1960.670213][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1960.670218][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1960.670222][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1960.670225][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1960.670229][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1960.670233][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1960.670236][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1960.670238][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1960.670241][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1960.670244][ C3] ? xas_alloc (lib/xarray.c:378) [ 1960.670249][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1960.670253][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1960.670256][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1960.670260][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1960.670265][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1960.670269][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1960.670274][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670279][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1960.670285][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1960.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670293][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1960.670296][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1960.670300][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1960.670303][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1960.670306][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1960.670312][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1960.670315][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1960.670318][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1960.670323][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1960.670327][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1960.670331][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1960.670333][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1960.670336][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670340][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1960.670344][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1960.670349][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1960.670351][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1960.670357][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1960.670361][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670365][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1960.670369][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1960.670373][ C3] handle_softirqs (kernel/softirq.c:579) [ 1960.670379][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1960.670382][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1960.670386][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1960.670390][ C3] [ 1960.670391][ C3] [ 1960.670392][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1960.670397][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1960.670400][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1960.670402][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1960.670405][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1960.670407][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1960.670408][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1960.670410][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1960.670412][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1960.670416][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1960.670421][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1960.670427][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1960.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 1960.670435][ C3] ? xas_alloc (lib/xarray.c:378) [ 1960.670438][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1960.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 1960.670445][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1960.670450][ C3] xas_alloc (lib/xarray.c:378) [ 1960.670455][ C3] xas_create (lib/xarray.c:685) [ 1960.670460][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1960.670465][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1960.670469][ C3] __xa_store (lib/xarray.c:1703) [ 1960.670473][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1960.670478][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1960.670481][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1960.670484][ C3] ? xa_store (lib/xarray.c:1734) [ 1960.670489][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1960.670493][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1960.670496][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1960.670501][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1960.670504][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1960.670506][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670511][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1960.670514][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1960.670519][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1960.670522][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1960.670527][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1960.670531][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1960.670535][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1960.670543][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1960.670547][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1960.670553][ C3] ksys_unshare (kernel/fork.c:3121) [ 1960.670557][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1960.670560][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1960.670564][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1960.670567][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1960.670570][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1960.670576][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1960.670580][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1960.670586][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1960.670589][ C3] RIP: 0033:0x7f439756d93b [ 1960.670593][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1960.670595][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1960.670598][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1960.670600][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1960.670602][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1960.670604][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1960.670606][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1972.656143][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1972.656152][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1972.656156][ C0] softirqs last disabled at (0): 0x0 | [ 1972.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 1972.656172][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1972.656174][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1972.656183][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1972.656187][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 1972.656190][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1972.656193][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1972.656195][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1972.656197][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 1972.656199][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 1972.656201][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 1972.656204][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1972.656210][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 1972.656212][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1972.656214][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1972.656215][ C0] PKRU: 55555554 [ 1972.656217][ C0] Call Trace: [ 1972.656222][ C0] [ 1972.656226][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1972.656230][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1972.656236][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1972.656240][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1972.656248][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1972.656253][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1972.656256][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1972.656259][ C0] ? xa_store (lib/xarray.c:1734) [ 1972.656266][ C0] xa_store (lib/xarray.c:1734) [ 1972.656270][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1972.656276][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1972.656282][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1972.656285][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1972.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1972.656295][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1972.656299][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1972.656306][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1972.656310][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1972.656316][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1972.656323][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 1972.656327][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 1972.656336][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1972.656341][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 1972.656347][ C0] ksys_unshare (kernel/fork.c:3121) [ 1972.656352][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1972.656356][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1972.656361][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1972.656364][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1972.656368][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1972.656375][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 1972.656379][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1972.656385][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1972.656391][ C0] RIP: 0033:0x7f439756d93b [ 1972.656396][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1972.656399][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1972.656402][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1972.656405][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1972.656407][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 1972.656408][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1972.656410][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 1976.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 1976.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 1976.669147][ C2] softirqs last disabled at (0): 0x0 | [ 1976.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 1976.669159][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1976.669162][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1976.669169][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1976.669172][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 1976.669176][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1976.669178][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1976.669180][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1976.669182][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 1976.669184][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 1976.669186][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 1976.669189][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1976.669193][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 1976.669195][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1976.669206][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1976.669208][ C2] PKRU: 55555554 [ 1976.669209][ C2] Call Trace: [ 1976.669214][ C2] [ 1976.669218][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1976.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1976.669227][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1976.669232][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1976.669238][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1976.669242][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1976.669246][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1976.669249][ C2] ? xa_store (lib/xarray.c:1734) [ 1976.669255][ C2] xa_store (lib/xarray.c:1734) [ 1976.669260][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1976.669270][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1976.669275][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1976.669278][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1976.669281][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1976.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1976.669290][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1976.669297][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1976.669301][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1976.669306][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1976.669312][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 1976.669317][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 1976.669325][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1976.669329][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 1976.669335][ C2] ksys_unshare (kernel/fork.c:3121) [ 1976.669340][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1976.669344][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1976.669348][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1976.669351][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1976.669355][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1976.669361][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 1976.669366][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1976.669371][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1976.669375][ C2] RIP: 0033:0x7f439756d93b [ 1976.669380][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1976.669383][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1976.669386][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1976.669389][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1976.669391][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1976.669393][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1976.669395][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 1984.244683][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 1984.244961][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 1984.245371][ C1] NMI backtrace for cpu 1 | [ 1984.245392][ C1] Tainted: [L]=SOFTLOCKUP [ 1984.245394][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1984.245397][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1984.245410][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1984.245414][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 1984.245418][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1984.245422][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1984.245424][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1984.245427][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 1984.245429][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 1984.245431][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 1984.245434][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1984.245438][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 1984.245440][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1984.245441][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1984.245443][ C1] PKRU: 55555554 [ 1984.245448][ C1] Call Trace: [ 1984.245451][ C1] [ 1984.245456][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1984.245460][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1984.245466][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1984.245470][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 1984.245479][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1984.245482][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1984.245485][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1984.245488][ C1] ? xa_store (lib/xarray.c:1734) [ 1984.245495][ C1] xa_store (lib/xarray.c:1734) [ 1984.245500][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1984.245506][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1984.245511][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1984.245514][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1984.245517][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.245523][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.245527][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1984.245535][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1984.245539][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1984.245544][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1984.245551][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 1984.245556][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 1984.245565][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1984.245569][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 1984.245576][ C1] ksys_unshare (kernel/fork.c:3121) [ 1984.245583][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1984.245587][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1984.245593][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1984.245596][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1984.245600][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1984.245607][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 1984.245611][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1984.245617][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1984.245622][ C1] RIP: 0033:0x7f439756d93b [ 1984.245628][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1984.245631][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1984.245634][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1984.245636][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1984.245638][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 1984.245640][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1984.245642][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1984.245640][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 1984.245642][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 1984.245648][ C1] | [ 1984.246368][ C3] Tainted: [L]=SOFTLOCKUP [ 1984.246370][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1984.246372][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 1984.246383][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 1984.246386][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 1984.246390][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 1984.246392][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 1984.246395][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 1984.246396][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 1984.246399][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 1984.246401][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 1984.246403][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1984.246407][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 1984.246409][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1984.246411][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1984.246413][ C3] PKRU: 55555554 [ 1984.246414][ C3] Call Trace: [ 1984.246416][ C3] [ 1984.246417][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 1984.246422][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 1984.246427][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 1984.246430][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1984.246434][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1984.246438][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1984.246441][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1984.246445][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1984.246448][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 1984.246451][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1984.246454][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1984.246456][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1984.246459][ C3] ? xas_alloc (lib/xarray.c:378) [ 1984.246464][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 1984.246468][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1984.246471][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1984.246474][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1984.246480][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 1984.246484][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 1984.246489][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246494][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1984.246500][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 1984.246505][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246508][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1984.246511][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 1984.246514][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 1984.246518][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 1984.246520][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1984.246526][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1984.246529][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 1984.246532][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 1984.246539][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 1984.246544][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1984.246547][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 1984.246550][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 1984.246553][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246557][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1984.246562][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 1984.246566][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 1984.246569][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 1984.246574][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 1984.246578][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246581][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1984.246586][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 1984.246590][ C3] handle_softirqs (kernel/softirq.c:579) [ 1984.246596][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 1984.246600][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 1984.246603][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 1984.246606][ C3] [ 1984.246608][ C3] [ 1984.246609][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 1984.246614][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1984.246617][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 1984.246620][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 1984.246622][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 1984.246624][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 1984.246626][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 1984.246628][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 1984.246630][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 1984.246634][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 1984.246640][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 1984.246645][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 1984.246649][ C3] ? xas_alloc (lib/xarray.c:378) [ 1984.246654][ C3] ? xas_alloc (lib/xarray.c:378) [ 1984.246657][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 1984.246661][ C3] ? xas_alloc (lib/xarray.c:378) [ 1984.246664][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 1984.246669][ C3] xas_alloc (lib/xarray.c:378) [ 1984.246673][ C3] xas_create (lib/xarray.c:685) [ 1984.246679][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 1984.246683][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1984.246686][ C3] __xa_store (lib/xarray.c:1703) [ 1984.246691][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 1984.246695][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1984.246698][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1984.246701][ C3] ? xa_store (lib/xarray.c:1734) [ 1984.246706][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 1984.246710][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 1984.246714][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 1984.246719][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 1984.246722][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 1984.246725][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246729][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1984.246732][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 1984.246737][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 1984.246741][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 1984.246745][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 1984.246749][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 1984.246754][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 1984.246760][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 1984.246765][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 1984.246770][ C3] ksys_unshare (kernel/fork.c:3121) [ 1984.246776][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 1984.246779][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 1984.246783][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 1984.246785][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 1984.246789][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 1984.246795][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 1984.246799][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1984.246804][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1984.246807][ C3] RIP: 0033:0x7f439756d93b [ 1984.246812][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1984.246815][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 1984.246817][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 1984.246819][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 1984.246821][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 1984.246823][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 1984.246824][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2000.656144][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2000.656154][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2000.656158][ C0] softirqs last disabled at (0): 0x0 | [ 2000.656172][ C0] Tainted: [L]=SOFTLOCKUP [ 2000.656174][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2000.656177][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2000.656188][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2000.656192][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2000.656196][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2000.656198][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2000.656211][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2000.656213][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2000.656215][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2000.656217][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2000.656220][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2000.656224][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2000.656228][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2000.656230][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2000.656231][ C0] PKRU: 55555554 [ 2000.656233][ C0] Call Trace: [ 2000.656238][ C0] [ 2000.656243][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2000.656250][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2000.656256][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2000.656261][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2000.656269][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2000.656273][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2000.656276][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2000.656280][ C0] ? xa_store (lib/xarray.c:1734) [ 2000.656287][ C0] xa_store (lib/xarray.c:1734) [ 2000.656292][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2000.656298][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2000.656303][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2000.656307][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2000.656310][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2000.656317][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2000.656320][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2000.656328][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2000.656332][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2000.656337][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2000.656344][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2000.656349][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2000.656359][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2000.656363][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2000.656369][ C0] ksys_unshare (kernel/fork.c:3121) [ 2000.656375][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2000.656378][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2000.656384][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2000.656387][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2000.656391][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2000.656398][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2000.656402][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2000.656408][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2000.656414][ C0] RIP: 0033:0x7f439756d93b [ 2000.656420][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2000.656422][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2000.656426][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2000.656430][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2000.656432][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2000.656433][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2000.656436][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2004.669136][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2004.669144][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2004.669148][ C2] softirqs last disabled at (0): 0x0 | [ 2004.669160][ C2] Tainted: [L]=SOFTLOCKUP [ 2004.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2004.669163][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2004.669172][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2004.669175][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2004.669178][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2004.669180][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2004.669182][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2004.669184][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2004.669186][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2004.669189][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2004.669191][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2004.669195][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2004.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2004.669199][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2004.669200][ C2] PKRU: 55555554 [ 2004.669202][ C2] Call Trace: [ 2004.669205][ C2] [ 2004.669209][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2004.669213][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2004.669218][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2004.669222][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2004.669229][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2004.669233][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2004.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2004.669238][ C2] ? xa_store (lib/xarray.c:1734) [ 2004.669244][ C2] xa_store (lib/xarray.c:1734) [ 2004.669249][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2004.669254][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2004.669259][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2004.669262][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2004.669265][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2004.669270][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2004.669274][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2004.669290][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2004.669293][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2004.669298][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2004.669304][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2004.669309][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2004.669318][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2004.669322][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2004.669327][ C2] ksys_unshare (kernel/fork.c:3121) [ 2004.669332][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2004.669335][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2004.669340][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2004.669343][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2004.669347][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2004.669353][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2004.669357][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2004.669362][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2004.669367][ C2] RIP: 0033:0x7f439756d93b [ 2004.669371][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2004.669374][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2004.669377][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2004.669379][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2004.669381][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2004.669383][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2004.669384][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2008.669141][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2008.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2008.669154][ C1] softirqs last disabled at (0): 0x0 | [ 2008.669169][ C1] Tainted: [L]=SOFTLOCKUP [ 2008.669171][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2008.669174][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2008.669184][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2008.669187][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2008.669190][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2008.669193][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2008.669195][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2008.669197][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2008.669199][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2008.669202][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2008.669204][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2008.669208][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2008.669221][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2008.669223][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2008.669224][ C1] PKRU: 55555554 [ 2008.669226][ C1] Call Trace: [ 2008.669230][ C1] [ 2008.669234][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2008.669238][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2008.669244][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2008.669249][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2008.669256][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2008.669260][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2008.669263][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2008.669266][ C1] ? xa_store (lib/xarray.c:1734) [ 2008.669273][ C1] xa_store (lib/xarray.c:1734) [ 2008.669278][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2008.669284][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2008.669290][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2008.669293][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2008.669296][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.669303][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.669306][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2008.669314][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2008.669318][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2008.669323][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2008.669330][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2008.669335][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2008.669344][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2008.669348][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2008.669354][ C1] ksys_unshare (kernel/fork.c:3121) [ 2008.669360][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2008.669363][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2008.669368][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2008.669371][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2008.669375][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2008.669382][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2008.669386][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2008.669392][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2008.669398][ C1] RIP: 0033:0x7f439756d93b [ 2008.669404][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2008.669407][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2008.669410][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2008.669412][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2008.669414][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2008.669416][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2008.669418][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2008.670139][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2008.670148][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2008.670152][ C3] softirqs last disabled at (0): 0x0 | [ 2008.670164][ C3] Tainted: [L]=SOFTLOCKUP [ 2008.670165][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2008.670168][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2008.670176][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2008.670179][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2008.670182][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2008.670184][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2008.670186][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2008.670188][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2008.670189][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2008.670192][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2008.670194][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2008.670198][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2008.670200][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2008.670201][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2008.670203][ C3] PKRU: 55555554 [ 2008.670204][ C3] Call Trace: [ 2008.670208][ C3] [ 2008.670209][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2008.670214][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2008.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2008.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2008.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2008.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2008.670236][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2008.670240][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2008.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2008.670246][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2008.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2008.670252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2008.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 2008.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2008.670265][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2008.670267][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2008.670271][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2008.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2008.670281][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2008.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670290][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2008.670296][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2008.670302][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2008.670308][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2008.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2008.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2008.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2008.670323][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2008.670325][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2008.670328][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2008.670333][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2008.670337][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2008.670341][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2008.670344][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2008.670347][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670351][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2008.670355][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2008.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2008.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2008.670368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2008.670373][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670376][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2008.670381][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2008.670386][ C3] handle_softirqs (kernel/softirq.c:579) [ 2008.670392][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2008.670396][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2008.670399][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2008.670403][ C3] [ 2008.670404][ C3] [ 2008.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2008.670411][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2008.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2008.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2008.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2008.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2008.670424][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2008.670426][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2008.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2008.670432][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2008.670438][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2008.670444][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2008.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 2008.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2008.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2008.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 2008.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2008.670468][ C3] xas_alloc (lib/xarray.c:378) [ 2008.670473][ C3] xas_create (lib/xarray.c:685) [ 2008.670479][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2008.670484][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2008.670488][ C3] __xa_store (lib/xarray.c:1703) [ 2008.670492][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2008.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2008.670500][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2008.670503][ C3] ? xa_store (lib/xarray.c:1734) [ 2008.670508][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2008.670511][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2008.670515][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2008.670519][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2008.670522][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2008.670525][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2008.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2008.670537][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2008.670541][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2008.670546][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2008.670549][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2008.670554][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2008.670562][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2008.670566][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2008.670571][ C3] ksys_unshare (kernel/fork.c:3121) [ 2008.670575][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2008.670579][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2008.670582][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2008.670584][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2008.670588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2008.670594][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2008.670598][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2008.670603][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2008.670606][ C3] RIP: 0033:0x7f439756d93b [ 2008.670610][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2008.670613][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2008.670616][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2008.670618][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2008.670620][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2008.670622][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2008.670624][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2028.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2028.656148][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2028.656152][ C0] softirqs last disabled at (0): 0x0 | [ 2028.656166][ C0] Tainted: [L]=SOFTLOCKUP [ 2028.656167][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2028.656170][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2028.656180][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2028.656184][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2028.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2028.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2028.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2028.656194][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2028.656196][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2028.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2028.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2028.656205][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2028.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2028.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2028.656210][ C0] PKRU: 55555554 [ 2028.656212][ C0] Call Trace: [ 2028.656223][ C0] [ 2028.656226][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2028.656230][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2028.656235][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2028.656240][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2028.656247][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2028.656251][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2028.656255][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2028.656258][ C0] ? xa_store (lib/xarray.c:1734) [ 2028.656265][ C0] xa_store (lib/xarray.c:1734) [ 2028.656270][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2028.656276][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2028.656281][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2028.656284][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2028.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2028.656294][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2028.656297][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2028.656305][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2028.656309][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2028.656314][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2028.656321][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2028.656327][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2028.656336][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2028.656340][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2028.656346][ C0] ksys_unshare (kernel/fork.c:3121) [ 2028.656351][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2028.656355][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2028.656360][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2028.656363][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2028.656367][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2028.656374][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2028.656379][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2028.656385][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2028.656390][ C0] RIP: 0033:0x7f439756d93b [ 2028.656395][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2028.656398][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2028.656401][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2028.656403][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2028.656405][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2028.656407][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2028.656409][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2032.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2032.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2032.669146][ C2] softirqs last disabled at (0): 0x0 | [ 2032.669158][ C2] Tainted: [L]=SOFTLOCKUP [ 2032.669159][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2032.669161][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2032.669169][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2032.669172][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2032.669175][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2032.669178][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2032.669180][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2032.669182][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2032.669184][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2032.669186][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2032.669188][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2032.669193][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2032.669195][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2032.669197][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2032.669198][ C2] PKRU: 55555554 [ 2032.669199][ C2] Call Trace: [ 2032.669202][ C2] [ 2032.669206][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2032.669210][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2032.669215][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2032.669219][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2032.669225][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2032.669228][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2032.669231][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2032.669234][ C2] ? xa_store (lib/xarray.c:1734) [ 2032.669241][ C2] xa_store (lib/xarray.c:1734) [ 2032.669245][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2032.669251][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2032.669256][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2032.669259][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2032.669263][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2032.669268][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2032.669272][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2032.669278][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2032.669282][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2032.669287][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2032.669292][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2032.669297][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2032.669306][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2032.669310][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2032.669315][ C2] ksys_unshare (kernel/fork.c:3121) [ 2032.669320][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2032.669323][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2032.669328][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2032.669331][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2032.669335][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2032.669341][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2032.669345][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2032.669350][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2032.669354][ C2] RIP: 0033:0x7f439756d93b [ 2032.669359][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2032.669362][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2032.669365][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2032.669367][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2032.669368][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2032.669370][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2032.669372][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2036.669141][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2036.669151][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2036.669154][ C1] softirqs last disabled at (0): 0x0 | [ 2036.669168][ C1] Tainted: [L]=SOFTLOCKUP [ 2036.669170][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2036.669173][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2036.669182][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2036.669186][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2036.669189][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2036.669191][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2036.669193][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2036.669195][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2036.669197][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2036.669200][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2036.669202][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2036.669207][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2036.669209][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2036.669211][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2036.669213][ C1] PKRU: 55555554 [ 2036.669214][ C1] Call Trace: [ 2036.669219][ C1] [ 2036.669223][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2036.669226][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2036.669232][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2036.669236][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2036.669244][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2036.669247][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2036.669250][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2036.669253][ C1] ? xa_store (lib/xarray.c:1734) [ 2036.669260][ C1] xa_store (lib/xarray.c:1734) [ 2036.669265][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2036.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2036.669276][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2036.669279][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2036.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.669289][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.669293][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2036.669301][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2036.669305][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2036.669310][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2036.669317][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2036.669322][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2036.669332][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2036.669336][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2036.669343][ C1] ksys_unshare (kernel/fork.c:3121) [ 2036.669348][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2036.669352][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2036.669357][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2036.669361][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2036.669364][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2036.669372][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2036.669376][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2036.669382][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2036.669387][ C1] RIP: 0033:0x7f439756d93b [ 2036.669392][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2036.669395][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2036.669398][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2036.669401][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2036.669410][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2036.669412][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2036.669414][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2036.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2036.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2036.670145][ C3] softirqs last disabled at (0): 0x0 | [ 2036.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 2036.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2036.670161][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 2036.670168][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 2036.670171][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 2036.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2036.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2036.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2036.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2036.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2036.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2036.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2036.670191][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2036.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2036.670195][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2036.670197][ C3] PKRU: 55555554 [ 2036.670198][ C3] Call Trace: [ 2036.670202][ C3] [ 2036.670203][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2036.670210][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2036.670215][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2036.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2036.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2036.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2036.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2036.670235][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2036.670239][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2036.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2036.670246][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2036.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2036.670252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2036.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 2036.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2036.670264][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2036.670268][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2036.670271][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2036.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2036.670281][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2036.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670291][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2036.670297][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2036.670302][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2036.670309][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2036.670312][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2036.670315][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2036.670318][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2036.670325][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2036.670328][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2036.670331][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2036.670335][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2036.670340][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2036.670343][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2036.670346][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2036.670349][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670352][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2036.670357][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2036.670361][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2036.670364][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2036.670370][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2036.670374][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670377][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2036.670382][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2036.670386][ C3] handle_softirqs (kernel/softirq.c:579) [ 2036.670392][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2036.670395][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2036.670398][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2036.670402][ C3] [ 2036.670403][ C3] [ 2036.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2036.670409][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2036.670413][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2036.670415][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2036.670417][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2036.670419][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2036.670421][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2036.670423][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2036.670425][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2036.670429][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2036.670434][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2036.670440][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2036.670443][ C3] ? xas_alloc (lib/xarray.c:378) [ 2036.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 2036.670451][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2036.670455][ C3] ? xas_alloc (lib/xarray.c:378) [ 2036.670458][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2036.670463][ C3] xas_alloc (lib/xarray.c:378) [ 2036.670467][ C3] xas_create (lib/xarray.c:685) [ 2036.670473][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2036.670478][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2036.670481][ C3] __xa_store (lib/xarray.c:1703) [ 2036.670485][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2036.670490][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2036.670493][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2036.670496][ C3] ? xa_store (lib/xarray.c:1734) [ 2036.670501][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2036.670505][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2036.670508][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2036.670513][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2036.670515][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2036.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670522][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2036.670525][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2036.670530][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2036.670534][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2036.670538][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2036.670542][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2036.670547][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2036.670554][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2036.670558][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2036.670564][ C3] ksys_unshare (kernel/fork.c:3121) [ 2036.670568][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2036.670571][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2036.670575][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2036.670577][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2036.670581][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2036.670587][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2036.670591][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2036.670596][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2036.670599][ C3] RIP: 0033:0x7f439756d93b [ 2036.670603][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2036.670605][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2036.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2036.670610][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2036.670612][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2036.670614][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2036.670616][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2056.656142][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2056.656152][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2056.656156][ C0] softirqs last disabled at (0): 0x0 | [ 2056.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 2056.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2056.656174][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 2056.656182][ C0] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 2056.656185][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000246 [ 2056.656188][ C0] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2056.656191][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2056.656193][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2056.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2056.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2056.656200][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2056.656202][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2056.656208][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2056.656210][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2056.656211][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2056.656214][ C0] PKRU: 55555554 [ 2056.656215][ C0] Call Trace: [ 2056.656220][ C0] [ 2056.656224][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2056.656235][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2056.656238][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2056.656243][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2056.656248][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2056.656256][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2056.656260][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2056.656263][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2056.656266][ C0] ? xa_store (lib/xarray.c:1734) [ 2056.656273][ C0] xa_store (lib/xarray.c:1734) [ 2056.656278][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2056.656284][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2056.656290][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2056.656293][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2056.656296][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2056.656303][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2056.656307][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2056.656315][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2056.656319][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2056.656324][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2056.656332][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2056.656337][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2056.656346][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2056.656350][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2056.656357][ C0] ksys_unshare (kernel/fork.c:3121) [ 2056.656363][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2056.656366][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2056.656372][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2056.656375][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2056.656379][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2056.656386][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2056.656390][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2056.656397][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2056.656403][ C0] RIP: 0033:0x7f439756d93b [ 2056.656407][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2056.656410][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2056.656413][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2056.656415][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2056.656417][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2056.656419][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2056.656421][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2060.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2060.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2060.669147][ C2] softirqs last disabled at (0): 0x0 | [ 2060.669159][ C2] Tainted: [L]=SOFTLOCKUP [ 2060.669160][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2060.669163][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2060.669171][ C2] Code: 00 00 fc ff df 49 01 c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 <8b> 45 00 89 44 24 40 85 c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 All code ======== 0: 00 00 add %al,(%rax) 2: fc cld 3: ff lcall (bad) 4: df 49 01 fisttps 0x1(%rcx) 7: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) b: 03 be 04 00 00 00 add 0x4(%rsi),%edi 11: 48 89 ef mov %rbp,%rdi 14: e8 5d b8 c7 fd call 0xfffffffffdc7b876 19: 41 0f b6 06 movzbl (%r14),%eax 1d: 41 38 c5 cmp %al,%r13b 20: 7c 08 jl 0x2a 22: 84 c0 test %al,%al 24: 0f 85 8d 07 00 00 jne 0x7b7 2a:* 8b 45 00 mov 0x0(%rbp),%eax <-- trapping instruction 2d: 89 44 24 40 mov %eax,0x40(%rsp) 31: 85 c0 test %eax,%eax 33: 0f 85 6e 01 00 00 jne 0x1a7 39: 48 89 ef mov %rbp,%rdi 3c: be .byte 0xbe 3d: 04 00 add $0x0,%al ... Code starting with the faulting instruction =========================================== 0: 8b 45 00 mov 0x0(%rbp),%eax 3: 89 44 24 40 mov %eax,0x40(%rsp) 7: 85 c0 test %eax,%eax 9: 0f 85 6e 01 00 00 jne 0x17d f: 48 89 ef mov %rbp,%rdi 12: be .byte 0xbe 13: 04 00 add $0x0,%al ... [ 2060.669175][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000246 [ 2060.669178][ C2] RAX: 0000000000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2060.669180][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2060.669182][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2060.669184][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2060.669186][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2060.669188][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2060.669191][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2060.669195][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2060.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2060.669199][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2060.669200][ C2] PKRU: 55555554 [ 2060.669202][ C2] Call Trace: [ 2060.669206][ C2] [ 2060.669210][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2060.669214][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2060.669220][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2060.669223][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2060.669231][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2060.669234][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2060.669237][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2060.669240][ C2] ? xa_store (lib/xarray.c:1734) [ 2060.669247][ C2] xa_store (lib/xarray.c:1734) [ 2060.669251][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2060.669256][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2060.669262][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2060.669265][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2060.669268][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2060.669273][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2060.669277][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2060.669284][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2060.669288][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2060.669293][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2060.669299][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2060.669303][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2060.669312][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2060.669316][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2060.669321][ C2] ksys_unshare (kernel/fork.c:3121) [ 2060.669326][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2060.669330][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2060.669334][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2060.669337][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2060.669341][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2060.669347][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2060.669351][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2060.669356][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2060.669360][ C2] RIP: 0033:0x7f439756d93b [ 2060.669365][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2060.669368][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2060.669371][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2060.669373][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2060.669375][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2060.669377][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2060.669379][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2062.259086][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2062.259373][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2062.259628][ C1] NMI backtrace for cpu 1 | [ 2062.259647][ C1] Tainted: [L]=SOFTLOCKUP [ 2062.259649][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2062.259652][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2062.259663][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2062.259667][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2062.259671][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2062.259674][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2062.259676][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2062.259678][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2062.259680][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2062.259682][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2062.259685][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2062.259689][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2062.259691][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2062.259692][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2062.259694][ C1] PKRU: 55555554 [ 2062.259695][ C1] Call Trace: [ 2062.259699][ C1] [ 2062.259703][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2062.259707][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2062.259713][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2062.259717][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2062.259725][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2062.259729][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2062.259732][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2062.259735][ C1] ? xa_store (lib/xarray.c:1734) [ 2062.259742][ C1] xa_store (lib/xarray.c:1734) [ 2062.259746][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2062.259752][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2062.259757][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2062.259760][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2062.259763][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.259769][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.259772][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2062.259780][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2062.259784][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2062.259789][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2062.259796][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2062.259801][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2062.259810][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2062.259814][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2062.259821][ C1] ksys_unshare (kernel/fork.c:3121) [ 2062.259828][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2062.259831][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2062.259837][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2062.259840][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2062.259844][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2062.259851][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2062.259855][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2062.259861][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2062.259866][ C1] RIP: 0033:0x7f439756d93b [ 2062.259870][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2062.259873][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2062.259876][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2062.259878][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2062.259880][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2062.259882][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2062.259884][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2062.259882][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2062.259884][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2062.259890][ C1] | [ 2062.260630][ C3] Tainted: [L]=SOFTLOCKUP [ 2062.260632][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2062.260633][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2062.260640][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2062.260643][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2062.260647][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2062.260650][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2062.260652][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2062.260654][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2062.260657][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2062.260659][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2062.260662][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2062.260666][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2062.260668][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2062.260670][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2062.260672][ C3] PKRU: 55555554 [ 2062.260673][ C3] Call Trace: [ 2062.260675][ C3] [ 2062.260676][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2062.260681][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2062.260685][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2062.260689][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2062.260692][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2062.260697][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2062.260700][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2062.260704][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2062.260707][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2062.260710][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2062.260712][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2062.260715][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2062.260718][ C3] ? xas_alloc (lib/xarray.c:378) [ 2062.260723][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2062.260726][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2062.260729][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2062.260733][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2062.260739][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2062.260743][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2062.260748][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260752][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2062.260759][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2062.260764][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260767][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2062.260770][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2062.260773][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2062.260777][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2062.260779][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2062.260785][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2062.260788][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2062.260791][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2062.260796][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2062.260799][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2062.260803][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2062.260805][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2062.260809][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260812][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2062.260817][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2062.260821][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2062.260824][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2062.260829][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2062.260833][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260836][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2062.260841][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2062.260845][ C3] handle_softirqs (kernel/softirq.c:579) [ 2062.260851][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2062.260854][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2062.260857][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2062.260861][ C3] [ 2062.260862][ C3] [ 2062.260863][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2062.260867][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2062.260870][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2062.260872][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2062.260875][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2062.260876][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2062.260878][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2062.260880][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2062.260881][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2062.260885][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2062.260891][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2062.260896][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2062.260900][ C3] ? xas_alloc (lib/xarray.c:378) [ 2062.260905][ C3] ? xas_alloc (lib/xarray.c:378) [ 2062.260907][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2062.260911][ C3] ? xas_alloc (lib/xarray.c:378) [ 2062.260914][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2062.260919][ C3] xas_alloc (lib/xarray.c:378) [ 2062.260923][ C3] xas_create (lib/xarray.c:685) [ 2062.260929][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2062.260933][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2062.260937][ C3] __xa_store (lib/xarray.c:1703) [ 2062.260941][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2062.260945][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2062.260948][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2062.260951][ C3] ? xa_store (lib/xarray.c:1734) [ 2062.260956][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2062.260960][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2062.260963][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2062.260968][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2062.260971][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2062.260973][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260977][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2062.260981][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2062.260985][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2062.260989][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2062.260994][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2062.260998][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2062.261002][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2062.261010][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2062.261014][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2062.261019][ C3] ksys_unshare (kernel/fork.c:3121) [ 2062.261024][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2062.261028][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2062.261031][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2062.261033][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2062.261037][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2062.261043][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2062.261047][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2062.261052][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2062.261054][ C3] RIP: 0033:0x7f439756d93b [ 2062.261059][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2062.261061][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2062.261064][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2062.261066][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2062.261067][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2062.261069][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2062.261071][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2084.656142][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2084.656152][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2084.656155][ C0] softirqs last disabled at (0): 0x0 | [ 2084.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 2084.656172][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2084.656174][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2084.656185][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2084.656189][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2084.656192][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2084.656194][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2084.656197][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2084.656199][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2084.656201][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2084.656203][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2084.656206][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2084.656210][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2084.656212][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2084.656214][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2084.656216][ C0] PKRU: 55555554 [ 2084.656217][ C0] Call Trace: [ 2084.656223][ C0] [ 2084.656227][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2084.656231][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2084.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2084.656242][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2084.656249][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2084.656253][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2084.656256][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2084.656259][ C0] ? xa_store (lib/xarray.c:1734) [ 2084.656266][ C0] xa_store (lib/xarray.c:1734) [ 2084.656271][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2084.656276][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2084.656281][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2084.656284][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2084.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2084.656294][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2084.656298][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2084.656306][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2084.656310][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2084.656315][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2084.656322][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2084.656327][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2084.656337][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2084.656341][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2084.656348][ C0] ksys_unshare (kernel/fork.c:3121) [ 2084.656353][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2084.656356][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2084.656362][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2084.656365][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2084.656368][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2084.656376][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2084.656380][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2084.656386][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2084.656392][ C0] RIP: 0033:0x7f439756d93b [ 2084.656395][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2084.656398][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2084.656401][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2084.656404][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2084.656406][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2084.656408][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2084.656410][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2088.669135][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2088.669143][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2088.669147][ C2] softirqs last disabled at (0): 0x0 | [ 2088.669159][ C2] Tainted: [L]=SOFTLOCKUP [ 2088.669161][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2088.669163][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2088.669171][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2088.669174][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2088.669177][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2088.669180][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2088.669182][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2088.669184][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2088.669186][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2088.669188][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2088.669191][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2088.669195][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2088.669197][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2088.669198][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2088.669200][ C2] PKRU: 55555554 [ 2088.669201][ C2] Call Trace: [ 2088.669204][ C2] [ 2088.669208][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2088.669212][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.669217][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.669221][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2088.669228][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2088.669231][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.669234][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.669237][ C2] ? xa_store (lib/xarray.c:1734) [ 2088.669243][ C2] xa_store (lib/xarray.c:1734) [ 2088.669248][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2088.669252][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2088.669258][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.669261][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.669264][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.669270][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.669274][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2088.669280][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2088.669284][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2088.669289][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2088.669295][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2088.669299][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2088.669308][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2088.669312][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2088.669317][ C2] ksys_unshare (kernel/fork.c:3121) [ 2088.669322][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2088.669325][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2088.669329][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2088.669332][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2088.669336][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2088.669342][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2088.669346][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2088.669351][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2088.669356][ C2] RIP: 0033:0x7f439756d93b [ 2088.669360][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2088.669363][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2088.669366][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2088.669368][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2088.669370][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2088.669372][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2088.669374][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2088.669419][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2088.669428][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2088.669432][ C1] softirqs last disabled at (0): 0x0 | [ 2088.669446][ C1] Tainted: [L]=SOFTLOCKUP [ 2088.669447][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2088.669450][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2088.669459][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2088.669462][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2088.669466][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2088.669468][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2088.669470][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2088.669472][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2088.669474][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2088.669477][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2088.669479][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2088.669483][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2088.669485][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2088.669487][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2088.669489][ C1] PKRU: 55555554 [ 2088.669490][ C1] Call Trace: [ 2088.669494][ C1] [ 2088.669498][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2088.669502][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.669507][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.669511][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2088.669518][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2088.669522][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.669525][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.669528][ C1] ? xa_store (lib/xarray.c:1734) [ 2088.669535][ C1] xa_store (lib/xarray.c:1734) [ 2088.669540][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2088.669545][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2088.669550][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.669553][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.669556][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.669562][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.669566][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2088.669574][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2088.669577][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2088.669582][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2088.669589][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2088.669594][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2088.669603][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2088.669607][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2088.669613][ C1] ksys_unshare (kernel/fork.c:3121) [ 2088.669619][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2088.669622][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2088.669627][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2088.669631][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2088.669634][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2088.669641][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2088.669645][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2088.669651][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2088.669657][ C1] RIP: 0033:0x7f439756d93b [ 2088.669661][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2088.669664][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2088.669667][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2088.669669][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2088.669671][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2088.669673][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2088.669675][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2088.670128][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2088.670134][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2088.670138][ C3] softirqs last disabled at (0): 0x0 | [ 2088.670149][ C3] Tainted: [L]=SOFTLOCKUP [ 2088.670150][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2088.670152][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 2088.670158][ C3] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 2088.670162][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000246 [ 2088.670164][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2088.670167][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2088.670169][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2088.670171][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2088.670173][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2088.670175][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2088.670177][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2088.670181][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2088.670183][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2088.670185][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2088.670186][ C3] PKRU: 55555554 [ 2088.670188][ C3] Call Trace: [ 2088.670190][ C3] [ 2088.670192][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2088.670197][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2088.670202][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2088.670205][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2088.670210][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2088.670214][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2088.670218][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2088.670222][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2088.670225][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2088.670228][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2088.670231][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2088.670233][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2088.670236][ C3] ? xas_alloc (lib/xarray.c:378) [ 2088.670241][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2088.670244][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.670247][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.670250][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2088.670256][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2088.670260][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2088.670265][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670269][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2088.670275][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2088.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670282][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2088.670285][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2088.670289][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2088.670292][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2088.670295][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2088.670300][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2088.670303][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2088.670306][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2088.670311][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2088.670315][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2088.670319][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2088.670322][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2088.670326][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2088.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2088.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2088.670341][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2088.670346][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2088.670350][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670353][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2088.670358][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2088.670362][ C3] handle_softirqs (kernel/softirq.c:579) [ 2088.670368][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2088.670372][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2088.670375][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2088.670379][ C3] [ 2088.670380][ C3] [ 2088.670381][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2088.670385][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2088.670388][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2088.670390][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2088.670393][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2088.670395][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2088.670397][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2088.670399][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2088.670401][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2088.670405][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2088.670411][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2088.670416][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2088.670419][ C3] ? xas_alloc (lib/xarray.c:378) [ 2088.670424][ C3] ? xas_alloc (lib/xarray.c:378) [ 2088.670427][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2088.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 2088.670434][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2088.670439][ C3] xas_alloc (lib/xarray.c:378) [ 2088.670443][ C3] xas_create (lib/xarray.c:685) [ 2088.670449][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2088.670454][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.670457][ C3] __xa_store (lib/xarray.c:1703) [ 2088.670461][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2088.670466][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.670469][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2088.670472][ C3] ? xa_store (lib/xarray.c:1734) [ 2088.670477][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2088.670481][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2088.670483][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2088.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2088.670491][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2088.670494][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670498][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2088.670501][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2088.670506][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2088.670510][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2088.670515][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2088.670518][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2088.670523][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2088.670530][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2088.670534][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2088.670539][ C3] ksys_unshare (kernel/fork.c:3121) [ 2088.670543][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2088.670546][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2088.670550][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2088.670552][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2088.670556][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2088.670562][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2088.670566][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2088.670570][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2088.670573][ C3] RIP: 0033:0x7f439756d93b [ 2088.670577][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2088.670579][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2088.670582][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2088.670584][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2088.670586][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2088.670588][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2088.670590][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2112.656152][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2112.656162][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2112.656166][ C0] softirqs last disabled at (0): 0x0 | [ 2112.656181][ C0] Tainted: [L]=SOFTLOCKUP [ 2112.656183][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2112.656185][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2112.656198][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2112.656201][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2112.656206][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2112.656208][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2112.656210][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2112.656212][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2112.656215][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2112.656217][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2112.656220][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2112.656231][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2112.656233][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2112.656235][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2112.656237][ C0] PKRU: 55555554 [ 2112.656238][ C0] Call Trace: [ 2112.656245][ C0] [ 2112.656249][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2112.656254][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2112.656260][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2112.656265][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2112.656273][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2112.656278][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2112.656281][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2112.656285][ C0] ? xa_store (lib/xarray.c:1734) [ 2112.656292][ C0] xa_store (lib/xarray.c:1734) [ 2112.656297][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2112.656304][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2112.656309][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2112.656312][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2112.656315][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2112.656323][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2112.656326][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2112.656335][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2112.656340][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2112.656345][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2112.656353][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2112.656358][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2112.656368][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2112.656372][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2112.656379][ C0] ksys_unshare (kernel/fork.c:3121) [ 2112.656385][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2112.656389][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2112.656394][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2112.656398][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2112.656401][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2112.656409][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2112.656413][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2112.656419][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2112.656426][ C0] RIP: 0033:0x7f439756d93b [ 2112.656432][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2112.656434][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2112.656438][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2112.656440][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2112.656442][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2112.656444][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2112.656446][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2116.669140][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2116.669148][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2116.669152][ C2] softirqs last disabled at (0): 0x0 | [ 2116.669164][ C2] Tainted: [L]=SOFTLOCKUP [ 2116.669165][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2116.669168][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2116.669176][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2116.669179][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2116.669182][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2116.669184][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2116.669187][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2116.669188][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2116.669190][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2116.669192][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2116.669195][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2116.669200][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2116.669202][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2116.669204][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2116.669205][ C2] PKRU: 55555554 [ 2116.669207][ C2] Call Trace: [ 2116.669210][ C2] [ 2116.669214][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2116.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.669224][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.669228][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2116.669236][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2116.669239][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.669242][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.669245][ C2] ? xa_store (lib/xarray.c:1734) [ 2116.669252][ C2] xa_store (lib/xarray.c:1734) [ 2116.669256][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2116.669262][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2116.669267][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.669270][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.669274][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.669280][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.669284][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2116.669291][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2116.669295][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2116.669300][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2116.669306][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2116.669311][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2116.669319][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2116.669323][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2116.669330][ C2] ksys_unshare (kernel/fork.c:3121) [ 2116.669335][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2116.669338][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2116.669343][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2116.669346][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2116.669349][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2116.669356][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2116.669360][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2116.669366][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2116.669370][ C2] RIP: 0033:0x7f439756d93b [ 2116.669375][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2116.669378][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2116.669381][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2116.669384][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2116.669386][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2116.669387][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2116.669389][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2116.669438][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2116.669447][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2116.669451][ C1] softirqs last disabled at (0): 0x0 | [ 2116.669465][ C1] Tainted: [L]=SOFTLOCKUP [ 2116.669467][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2116.669469][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2116.669479][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2116.669482][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2116.669486][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2116.669489][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2116.669491][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2116.669493][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2116.669495][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2116.669497][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2116.669500][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2116.669506][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2116.669508][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2116.669510][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2116.669512][ C1] PKRU: 55555554 [ 2116.669513][ C1] Call Trace: [ 2116.669517][ C1] [ 2116.669521][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2116.669526][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.669531][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.669536][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2116.669543][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2116.669547][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.669550][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.669553][ C1] ? xa_store (lib/xarray.c:1734) [ 2116.669560][ C1] xa_store (lib/xarray.c:1734) [ 2116.669565][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2116.669571][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2116.669576][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.669579][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.669583][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.669589][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.669593][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2116.669601][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2116.669605][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2116.669610][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2116.669617][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2116.669622][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2116.669631][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2116.669635][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2116.669642][ C1] ksys_unshare (kernel/fork.c:3121) [ 2116.669647][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2116.669651][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2116.669656][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2116.669660][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2116.669663][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2116.669670][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2116.669674][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2116.669679][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2116.669685][ C1] RIP: 0033:0x7f439756d93b [ 2116.669690][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2116.669693][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2116.669696][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2116.669699][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2116.669701][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2116.669703][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2116.669705][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2116.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2116.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2116.670146][ C3] softirqs last disabled at (0): 0x0 | [ 2116.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 2116.670161][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2116.670163][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2116.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2116.670174][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2116.670177][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2116.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2116.670182][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2116.670184][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2116.670186][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2116.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2116.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2116.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2116.670196][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2116.670198][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2116.670200][ C3] PKRU: 55555554 [ 2116.670202][ C3] Call Trace: [ 2116.670205][ C3] [ 2116.670206][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2116.670212][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2116.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2116.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2116.670225][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2116.670231][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2116.670234][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2116.670239][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2116.670242][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2116.670246][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2116.670248][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2116.670251][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2116.670254][ C3] ? xas_alloc (lib/xarray.c:378) [ 2116.670259][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2116.670263][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.670270][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2116.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2116.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2116.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670289][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2116.670295][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2116.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2116.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2116.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2116.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2116.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2116.670323][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2116.670326][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2116.670329][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2116.670334][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2116.670338][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2116.670342][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2116.670345][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2116.670349][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670352][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2116.670357][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2116.670362][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2116.670364][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2116.670370][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2116.670374][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670378][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2116.670383][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2116.670388][ C3] handle_softirqs (kernel/softirq.c:579) [ 2116.670394][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2116.670399][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2116.670402][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2116.670406][ C3] [ 2116.670408][ C3] [ 2116.670409][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2116.670414][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2116.670417][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2116.670420][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2116.670424][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2116.670426][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2116.670429][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2116.670431][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2116.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2116.670437][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2116.670443][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2116.670449][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2116.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2116.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 2116.670460][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2116.670464][ C3] ? xas_alloc (lib/xarray.c:378) [ 2116.670467][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2116.670473][ C3] xas_alloc (lib/xarray.c:378) [ 2116.670477][ C3] xas_create (lib/xarray.c:685) [ 2116.670483][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2116.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.670492][ C3] __xa_store (lib/xarray.c:1703) [ 2116.670496][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2116.670501][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.670504][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2116.670507][ C3] ? xa_store (lib/xarray.c:1734) [ 2116.670512][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2116.670516][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2116.670519][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2116.670525][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2116.670528][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2116.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2116.670538][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2116.670543][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2116.670547][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2116.670552][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2116.670556][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2116.670560][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2116.670568][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2116.670572][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2116.670577][ C3] ksys_unshare (kernel/fork.c:3121) [ 2116.670582][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2116.670585][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2116.670589][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2116.670592][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2116.670595][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2116.670601][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2116.670605][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2116.670609][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2116.670613][ C3] RIP: 0033:0x7f439756d93b [ 2116.670617][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2116.670619][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2116.670622][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2116.670624][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2116.670626][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2116.670628][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2116.670629][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2140.272779][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2140.273072][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2140.273314][ C1] NMI backtrace for cpu 1 | [ 2140.273335][ C1] Tainted: [L]=SOFTLOCKUP [ 2140.273337][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2140.273339][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2140.273351][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2140.273355][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2140.273360][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2140.273362][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2140.273364][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2140.273366][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2140.273368][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2140.273371][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2140.273373][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2140.273377][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2140.273379][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2140.273380][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2140.273382][ C1] PKRU: 55555554 [ 2140.273384][ C1] Call Trace: [ 2140.273388][ C1] [ 2140.273392][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2140.273396][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.273402][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.273406][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2140.273414][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2140.273417][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.273421][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.273424][ C1] ? xa_store (lib/xarray.c:1734) [ 2140.273431][ C1] xa_store (lib/xarray.c:1734) [ 2140.273436][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2140.273442][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2140.273447][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.273450][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.273453][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.273460][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.273463][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2140.273471][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2140.273475][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2140.273480][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2140.273487][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2140.273492][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2140.273502][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2140.273506][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2140.273512][ C1] ksys_unshare (kernel/fork.c:3121) [ 2140.273519][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2140.273523][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2140.273528][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2140.273532][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2140.273535][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2140.273543][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2140.273547][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2140.273552][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2140.273558][ C1] RIP: 0033:0x7f439756d93b [ 2140.273562][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2140.273565][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2140.273568][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2140.273570][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2140.273572][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2140.273574][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2140.273576][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2140.273574][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2140.273576][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2140.273582][ C1] | [ 2140.274319][ C3] Tainted: [L]=SOFTLOCKUP [ 2140.274320][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2140.274322][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2140.274331][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2140.274334][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2140.274338][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2140.274341][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2140.274343][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2140.274345][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2140.274347][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2140.274349][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2140.274352][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2140.274355][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2140.274357][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2140.274359][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2140.274361][ C3] PKRU: 55555554 [ 2140.274363][ C3] Call Trace: [ 2140.274365][ C3] [ 2140.274366][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2140.274372][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2140.274377][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2140.274380][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2140.274384][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2140.274389][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2140.274392][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2140.274396][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2140.274399][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2140.274402][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2140.274405][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2140.274407][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2140.274410][ C3] ? xas_alloc (lib/xarray.c:378) [ 2140.274416][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2140.274420][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.274423][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.274426][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2140.274431][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2140.274435][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2140.274440][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274444][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2140.274450][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2140.274455][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274458][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2140.274461][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2140.274465][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2140.274468][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2140.274470][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2140.274477][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2140.274480][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2140.274483][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2140.274487][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2140.274491][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2140.274494][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2140.274497][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2140.274501][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274504][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2140.274508][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2140.274513][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2140.274515][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2140.274520][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2140.274524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274528][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2140.274533][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2140.274537][ C3] handle_softirqs (kernel/softirq.c:579) [ 2140.274543][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2140.274546][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2140.274549][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2140.274553][ C3] [ 2140.274554][ C3] [ 2140.274556][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2140.274560][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2140.274563][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2140.274565][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2140.274567][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2140.274570][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2140.274571][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2140.274573][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2140.274575][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2140.274579][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2140.274585][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2140.274590][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2140.274593][ C3] ? xas_alloc (lib/xarray.c:378) [ 2140.274598][ C3] ? xas_alloc (lib/xarray.c:378) [ 2140.274601][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2140.274605][ C3] ? xas_alloc (lib/xarray.c:378) [ 2140.274608][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2140.274613][ C3] xas_alloc (lib/xarray.c:378) [ 2140.274617][ C3] xas_create (lib/xarray.c:685) [ 2140.274624][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2140.274628][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.274632][ C3] __xa_store (lib/xarray.c:1703) [ 2140.274636][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2140.274641][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.274644][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.274647][ C3] ? xa_store (lib/xarray.c:1734) [ 2140.274652][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2140.274656][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2140.274659][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2140.274663][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.274667][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.274669][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274673][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.274677][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2140.274681][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2140.274685][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2140.274690][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2140.274694][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2140.274698][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2140.274705][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2140.274710][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2140.274715][ C3] ksys_unshare (kernel/fork.c:3121) [ 2140.274720][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2140.274724][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2140.274728][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2140.274730][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2140.274734][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2140.274740][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2140.274744][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2140.274749][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2140.274752][ C3] RIP: 0033:0x7f439756d93b [ 2140.274757][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2140.274760][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2140.274763][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2140.274765][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2140.274767][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2140.274768][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2140.274770][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2140.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2140.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2140.656151][ C0] softirqs last disabled at (0): 0x0 | [ 2140.656164][ C0] Tainted: [L]=SOFTLOCKUP [ 2140.656166][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2140.656168][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2140.656175][ C0] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 2140.656179][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000246 [ 2140.656182][ C0] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2140.656184][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2140.656186][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2140.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2140.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2140.656193][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2140.656196][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2140.656200][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2140.656202][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2140.656204][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2140.656205][ C0] PKRU: 55555554 [ 2140.656207][ C0] Call Trace: [ 2140.656212][ C0] [ 2140.656216][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2140.656226][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2140.656230][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.656236][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.656240][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2140.656248][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2140.656251][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.656254][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2140.656257][ C0] ? xa_store (lib/xarray.c:1734) [ 2140.656265][ C0] xa_store (lib/xarray.c:1734) [ 2140.656269][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2140.656274][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2140.656280][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2140.656283][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2140.656286][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.656293][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2140.656297][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2140.656305][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2140.656309][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2140.656314][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2140.656320][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2140.656325][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2140.656335][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2140.656339][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2140.656345][ C0] ksys_unshare (kernel/fork.c:3121) [ 2140.656350][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2140.656354][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2140.656359][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2140.656362][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2140.656366][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2140.656373][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2140.656377][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2140.656383][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2140.656388][ C0] RIP: 0033:0x7f439756d93b [ 2140.656392][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2140.656395][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2140.656398][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2140.656400][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2140.656402][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2140.656404][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2140.656406][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2144.669140][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2144.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2144.669153][ C2] softirqs last disabled at (0): 0x0 | [ 2144.669167][ C2] Tainted: [L]=SOFTLOCKUP [ 2144.669169][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2144.669172][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2144.669182][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2144.669187][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2144.669190][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2144.669192][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2144.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2144.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2144.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2144.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2144.669203][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2144.669208][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2144.669210][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2144.669212][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2144.669214][ C2] PKRU: 55555554 [ 2144.669215][ C2] Call Trace: [ 2144.669220][ C2] [ 2144.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2144.669230][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2144.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2144.669240][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2144.669247][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2144.669252][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2144.669255][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2144.669257][ C2] ? xa_store (lib/xarray.c:1734) [ 2144.669265][ C2] xa_store (lib/xarray.c:1734) [ 2144.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2144.669276][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2144.669281][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2144.669284][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2144.669287][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2144.669295][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2144.669298][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2144.669306][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2144.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2144.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2144.669323][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2144.669328][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2144.669338][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2144.669342][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2144.669348][ C2] ksys_unshare (kernel/fork.c:3121) [ 2144.669354][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2144.669357][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2144.669363][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2144.669366][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2144.669370][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2144.669377][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2144.669382][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2144.669388][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2144.669393][ C2] RIP: 0033:0x7f439756d93b [ 2144.669399][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2144.669402][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2144.669405][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2144.669407][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2144.669409][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2144.669411][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2144.669413][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2164.669143][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2164.669153][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2164.669157][ C1] softirqs last disabled at (0): 0x0 | [ 2164.669171][ C1] Tainted: [L]=SOFTLOCKUP [ 2164.669173][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2164.669176][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2164.669186][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2164.669190][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2164.669193][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2164.669195][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2164.669197][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2164.669200][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2164.669202][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2164.669204][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2164.669207][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2164.669210][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2164.669213][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2164.669214][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2164.669216][ C1] PKRU: 55555554 [ 2164.669217][ C1] Call Trace: [ 2164.669223][ C1] [ 2164.669227][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2164.669231][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2164.669236][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2164.669241][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2164.669249][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2164.669253][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2164.669256][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2164.669259][ C1] ? xa_store (lib/xarray.c:1734) [ 2164.669266][ C1] xa_store (lib/xarray.c:1734) [ 2164.669271][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2164.669277][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2164.669282][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2164.669285][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2164.669288][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.669296][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.669299][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2164.669307][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2164.669311][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2164.669316][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2164.669323][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2164.669328][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2164.669338][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2164.669342][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2164.669349][ C1] ksys_unshare (kernel/fork.c:3121) [ 2164.669354][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2164.669357][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2164.669363][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2164.669366][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2164.669370][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2164.669377][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2164.669382][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2164.669387][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2164.669393][ C1] RIP: 0033:0x7f439756d93b [ 2164.669398][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2164.669401][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2164.669405][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2164.669407][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2164.669409][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2164.669411][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2164.669413][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2164.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2164.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2164.670146][ C3] softirqs last disabled at (0): 0x0 | [ 2164.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 2164.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2164.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2164.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2164.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2164.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2164.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2164.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2164.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2164.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2164.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2164.670188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2164.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2164.670194][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2164.670196][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2164.670198][ C3] PKRU: 55555554 [ 2164.670199][ C3] Call Trace: [ 2164.670203][ C3] [ 2164.670205][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2164.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2164.670216][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2164.670219][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2164.670223][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2164.670228][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2164.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2164.670235][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2164.670238][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2164.670242][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2164.670244][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2164.670247][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2164.670250][ C3] ? xas_alloc (lib/xarray.c:378) [ 2164.670256][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2164.670261][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2164.670264][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2164.670269][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2164.670274][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2164.670278][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2164.670283][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670288][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2164.670294][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2164.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2164.670306][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2164.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2164.670313][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2164.670315][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2164.670321][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2164.670324][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2164.670327][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2164.670332][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2164.670336][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2164.670339][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2164.670342][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2164.670346][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670349][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2164.670354][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2164.670358][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2164.670361][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2164.670367][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2164.670370][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670374][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2164.670379][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2164.670383][ C3] handle_softirqs (kernel/softirq.c:579) [ 2164.670389][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2164.670392][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2164.670396][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2164.670400][ C3] [ 2164.670401][ C3] [ 2164.670403][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2164.670408][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2164.670411][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2164.670414][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2164.670417][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2164.670419][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2164.670421][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2164.670423][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2164.670425][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2164.670429][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2164.670435][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2164.670441][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2164.670445][ C3] ? xas_alloc (lib/xarray.c:378) [ 2164.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 2164.670452][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2164.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 2164.670459][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2164.670465][ C3] xas_alloc (lib/xarray.c:378) [ 2164.670470][ C3] xas_create (lib/xarray.c:685) [ 2164.670476][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2164.670480][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2164.670484][ C3] __xa_store (lib/xarray.c:1703) [ 2164.670488][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2164.670493][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2164.670495][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2164.670498][ C3] ? xa_store (lib/xarray.c:1734) [ 2164.670503][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2164.670507][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2164.670518][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2164.670522][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2164.670525][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2164.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670532][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2164.670536][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2164.670540][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2164.670544][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2164.670549][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2164.670553][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2164.670558][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2164.670566][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2164.670570][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2164.670576][ C3] ksys_unshare (kernel/fork.c:3121) [ 2164.670580][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2164.670584][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2164.670587][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2164.670590][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2164.670594][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2164.670600][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2164.670604][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2164.670610][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2164.670613][ C3] RIP: 0033:0x7f439756d93b [ 2164.670617][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2164.670620][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2164.670623][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2164.670626][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2164.670628][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2164.670630][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2164.670632][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2168.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2168.656149][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2168.656153][ C0] softirqs last disabled at (0): 0x0 | [ 2168.656167][ C0] Tainted: [L]=SOFTLOCKUP [ 2168.656169][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2168.656171][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2168.656181][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2168.656185][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2168.656188][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2168.656190][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2168.656200][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2168.656203][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2168.656204][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2168.656207][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2168.656209][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2168.656213][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2168.656215][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2168.656217][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2168.656219][ C0] PKRU: 55555554 [ 2168.656220][ C0] Call Trace: [ 2168.656224][ C0] [ 2168.656228][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2168.656232][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2168.656238][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2168.656243][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2168.656251][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2168.656255][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2168.656258][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2168.656261][ C0] ? xa_store (lib/xarray.c:1734) [ 2168.656268][ C0] xa_store (lib/xarray.c:1734) [ 2168.656273][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2168.656279][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2168.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2168.656288][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2168.656290][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2168.656298][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2168.656302][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2168.656310][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2168.656313][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2168.656319][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2168.656326][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2168.656331][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2168.656340][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2168.656344][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2168.656351][ C0] ksys_unshare (kernel/fork.c:3121) [ 2168.656356][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2168.656360][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2168.656365][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2168.656368][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2168.656372][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2168.656379][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2168.656383][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2168.656390][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2168.656395][ C0] RIP: 0033:0x7f439756d93b [ 2168.656399][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2168.656402][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2168.656405][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2168.656409][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2168.656411][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2168.656413][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2168.656415][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2172.669143][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2172.669153][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2172.669157][ C2] softirqs last disabled at (0): 0x0 | [ 2172.669171][ C2] Tainted: [L]=SOFTLOCKUP [ 2172.669173][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2172.669176][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 2172.669186][ C2] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 2172.669190][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000246 [ 2172.669193][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2172.669195][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2172.669198][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2172.669200][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2172.669202][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2172.669204][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2172.669206][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2172.669211][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2172.669213][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2172.669215][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2172.669216][ C2] PKRU: 55555554 [ 2172.669218][ C2] Call Trace: [ 2172.669223][ C2] [ 2172.669228][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2172.669232][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2172.669238][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2172.669243][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2172.669251][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2172.669255][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2172.669258][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2172.669261][ C2] ? xa_store (lib/xarray.c:1734) [ 2172.669269][ C2] xa_store (lib/xarray.c:1734) [ 2172.669274][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2172.669280][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2172.669285][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2172.669289][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2172.669292][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2172.669299][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2172.669312][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2172.669320][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2172.669324][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2172.669329][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2172.669337][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2172.669343][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2172.669352][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2172.669356][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2172.669362][ C2] ksys_unshare (kernel/fork.c:3121) [ 2172.669368][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2172.669372][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2172.669377][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2172.669380][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2172.669384][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2172.669391][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2172.669395][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2172.669401][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2172.669407][ C2] RIP: 0033:0x7f439756d93b [ 2172.669413][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2172.669416][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2172.669419][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2172.669421][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2172.669423][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2172.669425][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2172.669427][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2192.669150][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2192.669160][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2192.669164][ C1] softirqs last disabled at (0): 0x0 | [ 2192.669176][ C1] Tainted: [L]=SOFTLOCKUP [ 2192.669178][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2192.669181][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2192.669190][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2192.669194][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2192.669197][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2192.669200][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2192.669202][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2192.669204][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2192.669206][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2192.669208][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2192.669211][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2192.669215][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2192.669225][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2192.669227][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2192.669229][ C1] PKRU: 55555554 [ 2192.669230][ C1] Call Trace: [ 2192.669235][ C1] [ 2192.669239][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2192.669243][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2192.669249][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2192.669253][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2192.669261][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2192.669265][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2192.669268][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2192.669271][ C1] ? xa_store (lib/xarray.c:1734) [ 2192.669278][ C1] xa_store (lib/xarray.c:1734) [ 2192.669283][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2192.669289][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2192.669294][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2192.669297][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2192.669300][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.669308][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.669312][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2192.669319][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2192.669323][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2192.669328][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2192.669336][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2192.669340][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2192.669349][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2192.669353][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2192.669360][ C1] ksys_unshare (kernel/fork.c:3121) [ 2192.669365][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2192.669368][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2192.669373][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2192.669376][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2192.669380][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2192.669387][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2192.669392][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2192.669398][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2192.669403][ C1] RIP: 0033:0x7f439756d93b [ 2192.669408][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2192.669411][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2192.669414][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2192.669417][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2192.669419][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2192.669420][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2192.669422][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2192.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2192.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2192.670147][ C3] softirqs last disabled at (0): 0x0 | [ 2192.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 2192.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2192.670164][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 2192.670170][ C3] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 2192.670173][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000246 [ 2192.670177][ C3] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2192.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2192.670181][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2192.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2192.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2192.670187][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2192.670190][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2192.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2192.670196][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2192.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2192.670199][ C3] PKRU: 55555554 [ 2192.670200][ C3] Call Trace: [ 2192.670204][ C3] [ 2192.670208][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2192.670215][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2192.670220][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2192.670224][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2192.670227][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2192.670232][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2192.670236][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2192.670239][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2192.670244][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2192.670247][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2192.670250][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2192.670253][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2192.670256][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2192.670259][ C3] ? xas_alloc (lib/xarray.c:378) [ 2192.670264][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2192.670269][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2192.670272][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2192.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2192.670281][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2192.670285][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2192.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670295][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2192.670301][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2192.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2192.670312][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2192.670316][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2192.670319][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2192.670322][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2192.670328][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2192.670331][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2192.670334][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2192.670339][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2192.670343][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2192.670347][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2192.670349][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2192.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670356][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2192.670361][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2192.670365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2192.670368][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2192.670374][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2192.670378][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670381][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2192.670387][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2192.670391][ C3] handle_softirqs (kernel/softirq.c:579) [ 2192.670397][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2192.670401][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2192.670404][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2192.670408][ C3] [ 2192.670409][ C3] [ 2192.670411][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2192.670416][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2192.670419][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2192.670422][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2192.670425][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2192.670427][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2192.670429][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2192.670431][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2192.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2192.670437][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2192.670443][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2192.670449][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2192.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2192.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 2192.670460][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2192.670465][ C3] ? xas_alloc (lib/xarray.c:378) [ 2192.670468][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2192.670473][ C3] xas_alloc (lib/xarray.c:378) [ 2192.670478][ C3] xas_create (lib/xarray.c:685) [ 2192.670485][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2192.670489][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2192.670493][ C3] __xa_store (lib/xarray.c:1703) [ 2192.670498][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2192.670503][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2192.670505][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2192.670508][ C3] ? xa_store (lib/xarray.c:1734) [ 2192.670513][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2192.670517][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2192.670520][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2192.670525][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2192.670528][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2192.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2192.670538][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2192.670543][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2192.670547][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2192.670552][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2192.670556][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2192.670560][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2192.670568][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2192.670572][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2192.670578][ C3] ksys_unshare (kernel/fork.c:3121) [ 2192.670582][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2192.670585][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2192.670589][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2192.670591][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2192.670595][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2192.670601][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2192.670605][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2192.670610][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2192.670613][ C3] RIP: 0033:0x7f439756d93b [ 2192.670617][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2192.670621][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2192.670623][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2192.670625][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2192.670627][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2192.670629][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2192.670631][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2196.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2196.656144][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2196.656149][ C0] softirqs last disabled at (0): 0x0 | [ 2196.656162][ C0] Tainted: [L]=SOFTLOCKUP [ 2196.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2196.656166][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2196.656175][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2196.656179][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2196.656182][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2196.656184][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2196.656187][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2196.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2196.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2196.656193][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2196.656196][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2196.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2196.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2196.656204][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2196.656206][ C0] PKRU: 55555554 [ 2196.656208][ C0] Call Trace: [ 2196.656211][ C0] [ 2196.656214][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2196.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2196.656224][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2196.656228][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2196.656236][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2196.656240][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2196.656243][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2196.656246][ C0] ? xa_store (lib/xarray.c:1734) [ 2196.656253][ C0] xa_store (lib/xarray.c:1734) [ 2196.656257][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2196.656263][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2196.656268][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2196.656272][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2196.656275][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2196.656281][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2196.656285][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2196.656293][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2196.656297][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2196.656302][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2196.656308][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2196.656313][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2196.656322][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2196.656326][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2196.656332][ C0] ksys_unshare (kernel/fork.c:3121) [ 2196.656337][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2196.656340][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2196.656345][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2196.656349][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2196.656353][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2196.656360][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2196.656364][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2196.656369][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2196.656374][ C0] RIP: 0033:0x7f439756d93b [ 2196.656378][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2196.656381][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2196.656384][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2196.656387][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2196.656389][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2196.656391][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2196.656393][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2200.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2200.669151][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2200.669155][ C2] softirqs last disabled at (0): 0x0 | [ 2200.669168][ C2] Tainted: [L]=SOFTLOCKUP [ 2200.669170][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2200.669173][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2200.669183][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2200.669186][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2200.669190][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2200.669192][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2200.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2200.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2200.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2200.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2200.669203][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2200.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2200.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2200.669211][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2200.669213][ C2] PKRU: 55555554 [ 2200.669214][ C2] Call Trace: [ 2200.669220][ C2] [ 2200.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2200.669230][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2200.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2200.669240][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2200.669248][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2200.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2200.669255][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2200.669258][ C2] ? xa_store (lib/xarray.c:1734) [ 2200.669265][ C2] xa_store (lib/xarray.c:1734) [ 2200.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2200.669276][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2200.669281][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2200.669284][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2200.669287][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2200.669295][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2200.669298][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2200.669306][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2200.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2200.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2200.669322][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2200.669327][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2200.669336][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2200.669340][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2200.669347][ C2] ksys_unshare (kernel/fork.c:3121) [ 2200.669352][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2200.669355][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2200.669361][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2200.669364][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2200.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2200.669375][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2200.669379][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2200.669385][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2200.669391][ C2] RIP: 0033:0x7f439756d93b [ 2200.669397][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2200.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2200.669403][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2200.669405][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2200.669407][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2200.669409][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2200.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2218.286954][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2218.287231][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2218.287474][ C1] NMI backtrace for cpu 1 | [ 2218.287495][ C1] Tainted: [L]=SOFTLOCKUP [ 2218.287496][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2218.287499][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2218.287511][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2218.287516][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2218.287520][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2218.287522][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2218.287524][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2218.287526][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2218.287529][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2218.287531][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2218.287533][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2218.287537][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2218.287539][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2218.287541][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2218.287543][ C1] PKRU: 55555554 [ 2218.287544][ C1] Call Trace: [ 2218.287548][ C1] [ 2218.287552][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2218.287556][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2218.287562][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2218.287566][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2218.287574][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2218.287577][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2218.287580][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2218.287583][ C1] ? xa_store (lib/xarray.c:1734) [ 2218.287591][ C1] xa_store (lib/xarray.c:1734) [ 2218.287595][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2218.287601][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2218.287606][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2218.287610][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2218.287619][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.287625][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.287628][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2218.287636][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2218.287640][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2218.287645][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2218.287653][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2218.287657][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2218.287667][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2218.287671][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2218.287678][ C1] ksys_unshare (kernel/fork.c:3121) [ 2218.287685][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2218.287689][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2218.287694][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2218.287697][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2218.287701][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2218.287709][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2218.287713][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2218.287719][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2218.287724][ C1] RIP: 0033:0x7f439756d93b [ 2218.287728][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2218.287731][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2218.287735][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2218.287737][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2218.287739][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2218.287740][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2218.287743][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2218.287740][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2218.287743][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2218.287748][ C1] | [ 2218.288479][ C3] Tainted: [L]=SOFTLOCKUP [ 2218.288480][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2218.288482][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2218.288489][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2218.288493][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2218.288496][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2218.288498][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2218.288501][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2218.288503][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2218.288505][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2218.288507][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2218.288509][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2218.288513][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2218.288516][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2218.288517][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2218.288519][ C3] PKRU: 55555554 [ 2218.288520][ C3] Call Trace: [ 2218.288522][ C3] [ 2218.288523][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2218.288528][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2218.288533][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2218.288536][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2218.288540][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2218.288544][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2218.288548][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2218.288552][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2218.288554][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2218.288558][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2218.288560][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2218.288563][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2218.288566][ C3] ? xas_alloc (lib/xarray.c:378) [ 2218.288572][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2218.288576][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2218.288579][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2218.288582][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2218.288588][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2218.288591][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2218.288596][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288600][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2218.288606][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2218.288611][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288614][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2218.288617][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2218.288620][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2218.288624][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2218.288627][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2218.288633][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2218.288637][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2218.288640][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2218.288644][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2218.288648][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2218.288652][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2218.288654][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2218.288658][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288661][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2218.288666][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2218.288670][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2218.288673][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2218.288678][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2218.288682][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288686][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2218.288690][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2218.288695][ C3] handle_softirqs (kernel/softirq.c:579) [ 2218.288700][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2218.288704][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2218.288707][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2218.288710][ C3] [ 2218.288712][ C3] [ 2218.288714][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2218.288718][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2218.288721][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2218.288724][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2218.288726][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2218.288728][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2218.288730][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2218.288731][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2218.288733][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2218.288737][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2218.288743][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2218.288748][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2218.288752][ C3] ? xas_alloc (lib/xarray.c:378) [ 2218.288756][ C3] ? xas_alloc (lib/xarray.c:378) [ 2218.288759][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2218.288763][ C3] ? xas_alloc (lib/xarray.c:378) [ 2218.288766][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2218.288771][ C3] xas_alloc (lib/xarray.c:378) [ 2218.288775][ C3] xas_create (lib/xarray.c:685) [ 2218.288781][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2218.288785][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2218.288789][ C3] __xa_store (lib/xarray.c:1703) [ 2218.288793][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2218.288798][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2218.288801][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2218.288804][ C3] ? xa_store (lib/xarray.c:1734) [ 2218.288810][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2218.288814][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2218.288817][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2218.288822][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2218.288825][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2218.288828][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288832][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2218.288835][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2218.288841][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2218.288844][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2218.288849][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2218.288853][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2218.288858][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2218.288864][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2218.288868][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2218.288874][ C3] ksys_unshare (kernel/fork.c:3121) [ 2218.288879][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2218.288882][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2218.288886][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2218.288888][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2218.288892][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2218.288898][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2218.288902][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2218.288907][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2218.288910][ C3] RIP: 0033:0x7f439756d93b [ 2218.288914][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2218.288917][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2218.288920][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2218.288922][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2218.288923][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2218.288925][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2218.288926][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2224.656138][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2224.656148][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2224.656151][ C0] softirqs last disabled at (0): 0x0 | [ 2224.656165][ C0] Tainted: [L]=SOFTLOCKUP [ 2224.656167][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2224.656170][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2224.656179][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2224.656183][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2224.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2224.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2224.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2224.656193][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2224.656196][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2224.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2224.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2224.656204][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2224.656206][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2224.656208][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2224.656210][ C0] PKRU: 55555554 [ 2224.656211][ C0] Call Trace: [ 2224.656215][ C0] [ 2224.656218][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2224.656223][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2224.656228][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2224.656233][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2224.656241][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2224.656245][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2224.656248][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2224.656251][ C0] ? xa_store (lib/xarray.c:1734) [ 2224.656258][ C0] xa_store (lib/xarray.c:1734) [ 2224.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2224.656268][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2224.656273][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2224.656276][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2224.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2224.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2224.656290][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2224.656298][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2224.656302][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2224.656307][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2224.656314][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2224.656319][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2224.656329][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2224.656333][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2224.656340][ C0] ksys_unshare (kernel/fork.c:3121) [ 2224.656345][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2224.656348][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2224.656353][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2224.656357][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2224.656360][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2224.656368][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2224.656372][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2224.656378][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2224.656384][ C0] RIP: 0033:0x7f439756d93b [ 2224.656389][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2224.656392][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2224.656395][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2224.656397][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2224.656399][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2224.656401][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2224.656403][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2228.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2228.669150][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2228.669154][ C2] softirqs last disabled at (0): 0x0 | [ 2228.669167][ C2] Tainted: [L]=SOFTLOCKUP [ 2228.669169][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2228.669172][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2228.669181][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2228.669185][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2228.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2228.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2228.669193][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2228.669195][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2228.669197][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2228.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2228.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2228.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2228.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2228.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2228.669212][ C2] PKRU: 55555554 [ 2228.669213][ C2] Call Trace: [ 2228.669219][ C2] [ 2228.669223][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2228.669227][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2228.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2228.669238][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2228.669245][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2228.669250][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2228.669253][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2228.669255][ C2] ? xa_store (lib/xarray.c:1734) [ 2228.669263][ C2] xa_store (lib/xarray.c:1734) [ 2228.669267][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2228.669274][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2228.669279][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2228.669282][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2228.669285][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2228.669292][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2228.669296][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2228.669303][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2228.669307][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2228.669312][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2228.669319][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2228.669324][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2228.669333][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2228.669337][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2228.669344][ C2] ksys_unshare (kernel/fork.c:3121) [ 2228.669349][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2228.669353][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2228.669357][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2228.669361][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2228.669365][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2228.669372][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2228.669376][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2228.669382][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2228.669387][ C2] RIP: 0033:0x7f439756d93b [ 2228.669393][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2228.669395][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2228.669399][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2228.669401][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2228.669403][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2228.669405][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2228.669407][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2244.669142][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2244.669152][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2244.669156][ C1] softirqs last disabled at (0): 0x0 | [ 2244.669169][ C1] Tainted: [L]=SOFTLOCKUP [ 2244.669171][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2244.669174][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2244.669184][ C1] Code: 00 00 fc ff df 49 01 c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 <8b> 45 00 89 44 24 40 85 c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 All code ======== 0: 00 00 add %al,(%rax) 2: fc cld 3: ff lcall (bad) 4: df 49 01 fisttps 0x1(%rcx) 7: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) b: 03 be 04 00 00 00 add 0x4(%rsi),%edi 11: 48 89 ef mov %rbp,%rdi 14: e8 5d b8 c7 fd call 0xfffffffffdc7b876 19: 41 0f b6 06 movzbl (%r14),%eax 1d: 41 38 c5 cmp %al,%r13b 20: 7c 08 jl 0x2a 22: 84 c0 test %al,%al 24: 0f 85 8d 07 00 00 jne 0x7b7 2a:* 8b 45 00 mov 0x0(%rbp),%eax <-- trapping instruction 2d: 89 44 24 40 mov %eax,0x40(%rsp) 31: 85 c0 test %eax,%eax 33: 0f 85 6e 01 00 00 jne 0x1a7 39: 48 89 ef mov %rbp,%rdi 3c: be .byte 0xbe 3d: 04 00 add $0x0,%al ... Code starting with the faulting instruction =========================================== 0: 8b 45 00 mov 0x0(%rbp),%eax 3: 89 44 24 40 mov %eax,0x40(%rsp) 7: 85 c0 test %eax,%eax 9: 0f 85 6e 01 00 00 jne 0x17d f: 48 89 ef mov %rbp,%rdi 12: be .byte 0xbe 13: 04 00 add $0x0,%al ... [ 2244.669187][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000246 [ 2244.669191][ C1] RAX: 0000000000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2244.669193][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2244.669196][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2244.669197][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2244.669200][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2244.669202][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2244.669205][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2244.669209][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2244.669211][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2244.669212][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2244.669214][ C1] PKRU: 55555554 [ 2244.669216][ C1] Call Trace: [ 2244.669220][ C1] [ 2244.669224][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2244.669228][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2244.669234][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2244.669238][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2244.669246][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2244.669250][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2244.669253][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2244.669256][ C1] ? xa_store (lib/xarray.c:1734) [ 2244.669263][ C1] xa_store (lib/xarray.c:1734) [ 2244.669268][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2244.669274][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2244.669279][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2244.669282][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2244.669285][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.669292][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.669295][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2244.669303][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2244.669307][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2244.669312][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2244.669320][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2244.669325][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2244.669334][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2244.669338][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2244.669345][ C1] ksys_unshare (kernel/fork.c:3121) [ 2244.669350][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2244.669353][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2244.669358][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2244.669362][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2244.669365][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2244.669373][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2244.669377][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2244.669383][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2244.669389][ C1] RIP: 0033:0x7f439756d93b [ 2244.669394][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2244.669397][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2244.669400][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2244.669402][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2244.669405][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2244.669406][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2244.669409][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2244.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2244.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2244.670145][ C3] softirqs last disabled at (0): 0x0 | [ 2244.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 2244.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2244.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2244.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2244.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2244.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2244.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2244.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2244.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2244.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2244.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2244.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2244.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2244.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2244.670193][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2244.670195][ C3] PKRU: 55555554 [ 2244.670196][ C3] Call Trace: [ 2244.670200][ C3] [ 2244.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2244.670209][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2244.670214][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2244.670217][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2244.670221][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2244.670226][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2244.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2244.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2244.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2244.670239][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2244.670242][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2244.670244][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2244.670247][ C3] ? xas_alloc (lib/xarray.c:378) [ 2244.670253][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2244.670258][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2244.670261][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2244.670265][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2244.670270][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2244.670274][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2244.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670284][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2244.670290][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2244.670295][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670298][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2244.670301][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2244.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2244.670308][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2244.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2244.670317][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2244.670320][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2244.670323][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2244.670327][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2244.670332][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2244.670335][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2244.670338][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2244.670342][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670346][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2244.670350][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2244.670354][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2244.670357][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2244.670363][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2244.670367][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670370][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2244.670375][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2244.670379][ C3] handle_softirqs (kernel/softirq.c:579) [ 2244.670385][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2244.670388][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2244.670392][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2244.670395][ C3] [ 2244.670397][ C3] [ 2244.670398][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2244.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2244.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2244.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2244.670411][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2244.670414][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2244.670416][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2244.670418][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2244.670420][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2244.670424][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2244.670430][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2244.670435][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2244.670439][ C3] ? xas_alloc (lib/xarray.c:378) [ 2244.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2244.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2244.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 2244.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2244.670469][ C3] xas_alloc (lib/xarray.c:378) [ 2244.670474][ C3] xas_create (lib/xarray.c:685) [ 2244.670480][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2244.670485][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2244.670488][ C3] __xa_store (lib/xarray.c:1703) [ 2244.670492][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2244.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2244.670500][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2244.670503][ C3] ? xa_store (lib/xarray.c:1734) [ 2244.670508][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2244.670513][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2244.670516][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2244.670521][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2244.670524][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2244.670526][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670530][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2244.670533][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2244.670538][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2244.670542][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2244.670547][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2244.670551][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2244.670555][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2244.670563][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2244.670567][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2244.670572][ C3] ksys_unshare (kernel/fork.c:3121) [ 2244.670576][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2244.670580][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2244.670583][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2244.670586][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2244.670589][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2244.670595][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2244.670599][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2244.670604][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2244.670607][ C3] RIP: 0033:0x7f439756d93b [ 2244.670611][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2244.670614][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2244.670617][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2244.670619][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2244.670621][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2244.670623][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2244.670625][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2252.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2252.656145][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2252.656149][ C0] softirqs last disabled at (0): 0x0 | [ 2252.656163][ C0] Tainted: [L]=SOFTLOCKUP [ 2252.656165][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2252.656167][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2252.656177][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2252.656180][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2252.656183][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2252.656185][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2252.656187][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2252.656190][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2252.656192][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2252.656194][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2252.656197][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2252.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2252.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2252.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2252.656207][ C0] PKRU: 55555554 [ 2252.656208][ C0] Call Trace: [ 2252.656212][ C0] [ 2252.656216][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2252.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2252.656226][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2252.656230][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2252.656238][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2252.656241][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2252.656244][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2252.656247][ C0] ? xa_store (lib/xarray.c:1734) [ 2252.656254][ C0] xa_store (lib/xarray.c:1734) [ 2252.656259][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2252.656264][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2252.656269][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2252.656272][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2252.656276][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2252.656282][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2252.656286][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2252.656293][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2252.656297][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2252.656303][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2252.656310][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2252.656314][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2252.656332][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2252.656336][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2252.656343][ C0] ksys_unshare (kernel/fork.c:3121) [ 2252.656348][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2252.656352][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2252.656356][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2252.656360][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2252.656364][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2252.656371][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2252.656375][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2252.656382][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2252.656387][ C0] RIP: 0033:0x7f439756d93b [ 2252.656393][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2252.656395][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2252.656398][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2252.656401][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2252.656402][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2252.656405][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2252.656407][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2256.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2256.669150][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2256.669154][ C2] softirqs last disabled at (0): 0x0 | [ 2256.669168][ C2] Tainted: [L]=SOFTLOCKUP [ 2256.669169][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2256.669172][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2256.669182][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2256.669185][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2256.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2256.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2256.669193][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2256.669195][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2256.669197][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2256.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2256.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2256.669206][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2256.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2256.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2256.669212][ C2] PKRU: 55555554 [ 2256.669213][ C2] Call Trace: [ 2256.669218][ C2] [ 2256.669233][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2256.669238][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2256.669243][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2256.669248][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2256.669256][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2256.669260][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2256.669263][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2256.669266][ C2] ? xa_store (lib/xarray.c:1734) [ 2256.669274][ C2] xa_store (lib/xarray.c:1734) [ 2256.669279][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2256.669285][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2256.669291][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2256.669294][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2256.669297][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2256.669304][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2256.669308][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2256.669315][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2256.669319][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2256.669324][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2256.669332][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2256.669337][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2256.669346][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2256.669350][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2256.669357][ C2] ksys_unshare (kernel/fork.c:3121) [ 2256.669362][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2256.669366][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2256.669370][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2256.669374][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2256.669378][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2256.669385][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2256.669389][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2256.669395][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2256.669400][ C2] RIP: 0033:0x7f439756d93b [ 2256.669406][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2256.669408][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2256.669411][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2256.669414][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2256.669415][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2256.669418][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2256.669419][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2272.669140][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2272.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2272.669159][ C1] softirqs last disabled at (0): 0x0 | [ 2272.669173][ C1] Tainted: [L]=SOFTLOCKUP [ 2272.669175][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2272.669178][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2272.669189][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2272.669192][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2272.669195][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2272.669197][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2272.669200][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2272.669202][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2272.669204][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2272.669206][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2272.669209][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2272.669212][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2272.669214][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2272.669216][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2272.669217][ C1] PKRU: 55555554 [ 2272.669219][ C1] Call Trace: [ 2272.669223][ C1] [ 2272.669227][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2272.669232][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2272.669237][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2272.669242][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2272.669250][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2272.669253][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2272.669256][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2272.669259][ C1] ? xa_store (lib/xarray.c:1734) [ 2272.669266][ C1] xa_store (lib/xarray.c:1734) [ 2272.669271][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2272.669277][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2272.669283][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2272.669285][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2272.669289][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.669296][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.669299][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2272.669307][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2272.669311][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2272.669316][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2272.669324][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2272.669329][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2272.669339][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2272.669343][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2272.669350][ C1] ksys_unshare (kernel/fork.c:3121) [ 2272.669355][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2272.669359][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2272.669366][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2272.669370][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2272.669373][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2272.669381][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2272.669385][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2272.669391][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2272.669397][ C1] RIP: 0033:0x7f439756d93b [ 2272.669402][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2272.669405][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2272.669408][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2272.669410][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2272.669412][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2272.669414][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2272.669416][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2272.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2272.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2272.670147][ C3] softirqs last disabled at (0): 0x0 | [ 2272.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 2272.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2272.670163][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2272.670168][ C3] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 2272.670171][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000246 [ 2272.670174][ C3] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2272.670177][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2272.670179][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2272.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2272.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2272.670185][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2272.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2272.670191][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2272.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2272.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2272.670196][ C3] PKRU: 55555554 [ 2272.670197][ C3] Call Trace: [ 2272.670201][ C3] [ 2272.670204][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2272.670212][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2272.670216][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2272.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2272.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2272.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2272.670237][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2272.670241][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2272.670245][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2272.670248][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2272.670252][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2272.670254][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2272.670257][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2272.670260][ C3] ? xas_alloc (lib/xarray.c:378) [ 2272.670265][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2272.670270][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2272.670273][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2272.670277][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2272.670282][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2272.670286][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2272.670292][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670296][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2272.670302][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2272.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2272.670314][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2272.670317][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2272.670321][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2272.670323][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2272.670329][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2272.670332][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2272.670335][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2272.670340][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2272.670345][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2272.670348][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2272.670351][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2272.670354][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670357][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2272.670362][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2272.670366][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2272.670369][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2272.670375][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2272.670378][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670382][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2272.670387][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2272.670391][ C3] handle_softirqs (kernel/softirq.c:579) [ 2272.670398][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2272.670401][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2272.670405][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2272.670409][ C3] [ 2272.670411][ C3] [ 2272.670412][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2272.670419][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2272.670422][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2272.670425][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2272.670428][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2272.670430][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2272.670432][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2272.670434][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2272.670436][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2272.670440][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2272.670446][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2272.670451][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2272.670455][ C3] ? xas_alloc (lib/xarray.c:378) [ 2272.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 2272.670463][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2272.670467][ C3] ? xas_alloc (lib/xarray.c:378) [ 2272.670470][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2272.670475][ C3] xas_alloc (lib/xarray.c:378) [ 2272.670480][ C3] xas_create (lib/xarray.c:685) [ 2272.670486][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2272.670491][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2272.670495][ C3] __xa_store (lib/xarray.c:1703) [ 2272.670499][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2272.670504][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2272.670507][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2272.670510][ C3] ? xa_store (lib/xarray.c:1734) [ 2272.670515][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2272.670518][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2272.670522][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2272.670527][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2272.670529][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2272.670532][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670536][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2272.670540][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2272.670545][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2272.670549][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2272.670553][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2272.670557][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2272.670562][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2272.670570][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2272.670573][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2272.670579][ C3] ksys_unshare (kernel/fork.c:3121) [ 2272.670583][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2272.670587][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2272.670590][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2272.670593][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2272.670596][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2272.670603][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2272.670606][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2272.670612][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2272.670615][ C3] RIP: 0033:0x7f439756d93b [ 2272.670619][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2272.670623][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2272.670626][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2272.670628][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2272.670630][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2272.670632][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2272.670635][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2280.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2280.656148][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2280.656152][ C0] softirqs last disabled at (0): 0x0 | [ 2280.656167][ C0] Tainted: [L]=SOFTLOCKUP [ 2280.656168][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2280.656171][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2280.656181][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2280.656184][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2280.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2280.656190][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2280.656192][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2280.656194][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2280.656196][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2280.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2280.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2280.656205][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2280.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2280.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2280.656211][ C0] PKRU: 55555554 [ 2280.656212][ C0] Call Trace: [ 2280.656216][ C0] [ 2280.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2280.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2280.656230][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2280.656235][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2280.656243][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2280.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2280.656249][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2280.656252][ C0] ? xa_store (lib/xarray.c:1734) [ 2280.656259][ C0] xa_store (lib/xarray.c:1734) [ 2280.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2280.656269][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2280.656275][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2280.656278][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2280.656281][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2280.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2280.656292][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2280.656299][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2280.656303][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2280.656308][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2280.656316][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2280.656320][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2280.656329][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2280.656333][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2280.656340][ C0] ksys_unshare (kernel/fork.c:3121) [ 2280.656345][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2280.656349][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2280.656354][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2280.656357][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2280.656361][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2280.656368][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2280.656372][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2280.656378][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2280.656383][ C0] RIP: 0033:0x7f439756d93b [ 2280.656388][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2280.656391][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2280.656394][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2280.656396][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2280.656398][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2280.656400][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2280.656402][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2284.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2284.669150][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2284.669154][ C2] softirqs last disabled at (0): 0x0 | [ 2284.669167][ C2] Tainted: [L]=SOFTLOCKUP [ 2284.669169][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2284.669172][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2284.669182][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2284.669185][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2284.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2284.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2284.669193][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2284.669195][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2284.669197][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2284.669199][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2284.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2284.669206][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2284.669208][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2284.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2284.669212][ C2] PKRU: 55555554 [ 2284.669213][ C2] Call Trace: [ 2284.669219][ C2] [ 2284.669223][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2284.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2284.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2284.669238][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2284.669246][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2284.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2284.669254][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2284.669257][ C2] ? xa_store (lib/xarray.c:1734) [ 2284.669264][ C2] xa_store (lib/xarray.c:1734) [ 2284.669269][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2284.669275][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2284.669281][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2284.669284][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2284.669287][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2284.669293][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2284.669297][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2284.669305][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2284.669309][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2284.669314][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2284.669321][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2284.669326][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2284.669336][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2284.669340][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2284.669347][ C2] ksys_unshare (kernel/fork.c:3121) [ 2284.669352][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2284.669356][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2284.669361][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2284.669364][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2284.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2284.669375][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2284.669379][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2284.669385][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2284.669391][ C2] RIP: 0033:0x7f439756d93b [ 2284.669396][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2284.669399][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2284.669402][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2284.669405][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2284.669407][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2284.669409][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2284.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2296.300679][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2296.300966][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2296.301207][ C1] NMI backtrace for cpu 1 | [ 2296.301227][ C1] Tainted: [L]=SOFTLOCKUP [ 2296.301229][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2296.301232][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2296.301244][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2296.301248][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2296.301252][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2296.301254][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2296.301256][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2296.301259][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2296.301261][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2296.301263][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2296.301265][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2296.301269][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2296.301271][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2296.301272][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2296.301274][ C1] PKRU: 55555554 [ 2296.301275][ C1] Call Trace: [ 2296.301278][ C1] [ 2296.301281][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2296.301285][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2296.301291][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2296.301295][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2296.301303][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2296.301306][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2296.301309][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2296.301312][ C1] ? xa_store (lib/xarray.c:1734) [ 2296.301319][ C1] xa_store (lib/xarray.c:1734) [ 2296.301323][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2296.301328][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2296.301334][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2296.301336][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2296.301340][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.301346][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.301350][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2296.301357][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2296.301362][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2296.301367][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2296.301375][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2296.301379][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2296.301389][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2296.301392][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2296.301399][ C1] ksys_unshare (kernel/fork.c:3121) [ 2296.301406][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2296.301410][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2296.301414][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2296.301418][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2296.301423][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2296.301430][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2296.301434][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2296.301440][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2296.301445][ C1] RIP: 0033:0x7f439756d93b [ 2296.301450][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2296.301453][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2296.301456][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2296.301458][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2296.301460][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2296.301462][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2296.301464][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2296.301462][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2296.301464][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2296.301470][ C1] | [ 2296.302209][ C3] Tainted: [L]=SOFTLOCKUP [ 2296.302210][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2296.302212][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2296.302218][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2296.302221][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2296.302224][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2296.302227][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2296.302228][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2296.302230][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2296.302232][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2296.302235][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2296.302237][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2296.302241][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2296.302243][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2296.302245][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2296.302247][ C3] PKRU: 55555554 [ 2296.302248][ C3] Call Trace: [ 2296.302249][ C3] [ 2296.302251][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2296.302256][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2296.302260][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2296.302263][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2296.302267][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2296.302272][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2296.302275][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2296.302279][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2296.302282][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2296.302285][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2296.302287][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2296.302290][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2296.302293][ C3] ? xas_alloc (lib/xarray.c:378) [ 2296.302298][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2296.302302][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2296.302305][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2296.302308][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2296.302314][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2296.302317][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2296.302323][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302327][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2296.302333][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2296.302338][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302341][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2296.302344][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2296.302347][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2296.302351][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2296.302353][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2296.302359][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2296.302362][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2296.302365][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2296.302370][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2296.302373][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2296.302377][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2296.302380][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2296.302383][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302386][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2296.302391][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2296.302395][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2296.302398][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2296.302403][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2296.302407][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302410][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2296.302415][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2296.302419][ C3] handle_softirqs (kernel/softirq.c:579) [ 2296.302424][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2296.302427][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2296.302430][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2296.302434][ C3] [ 2296.302435][ C3] [ 2296.302436][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2296.302440][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2296.302443][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2296.302446][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2296.302448][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2296.302450][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2296.302452][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2296.302453][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2296.302455][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2296.302459][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2296.302464][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2296.302470][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2296.302473][ C3] ? xas_alloc (lib/xarray.c:378) [ 2296.302477][ C3] ? xas_alloc (lib/xarray.c:378) [ 2296.302480][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2296.302484][ C3] ? xas_alloc (lib/xarray.c:378) [ 2296.302487][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2296.302491][ C3] xas_alloc (lib/xarray.c:378) [ 2296.302496][ C3] xas_create (lib/xarray.c:685) [ 2296.302501][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2296.302506][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2296.302509][ C3] __xa_store (lib/xarray.c:1703) [ 2296.302513][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2296.302518][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2296.302520][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2296.302523][ C3] ? xa_store (lib/xarray.c:1734) [ 2296.302528][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2296.302532][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2296.302535][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2296.302540][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2296.302543][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2296.302545][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302549][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2296.302553][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2296.302558][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2296.302561][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2296.302566][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2296.302570][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2296.302574][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2296.302580][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2296.302584][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2296.302589][ C3] ksys_unshare (kernel/fork.c:3121) [ 2296.302594][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2296.302597][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2296.302601][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2296.302603][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2296.302607][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2296.302613][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2296.302616][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2296.302621][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2296.302624][ C3] RIP: 0033:0x7f439756d93b [ 2296.302628][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2296.302630][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2296.302633][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2296.302635][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2296.302637][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2296.302638][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2296.302640][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2308.656137][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2308.656147][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2308.656151][ C0] softirqs last disabled at (0): 0x0 | [ 2308.656164][ C0] Tainted: [L]=SOFTLOCKUP [ 2308.656166][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2308.656168][ C0] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 2308.656176][ C0] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 2308.656180][ C0] RSP: 0018:ffffc900034c7a10 EFLAGS: 00000202 [ 2308.656183][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2308.656185][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2308.656188][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2308.656190][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2308.656192][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2308.656194][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2308.656197][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2308.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2308.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2308.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2308.656206][ C0] PKRU: 55555554 [ 2308.656208][ C0] Call Trace: [ 2308.656212][ C0] [ 2308.656214][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2308.656225][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2308.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2308.656234][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2308.656238][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2308.656246][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2308.656249][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2308.656252][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2308.656255][ C0] ? xa_store (lib/xarray.c:1734) [ 2308.656262][ C0] xa_store (lib/xarray.c:1734) [ 2308.656267][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2308.656272][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2308.656278][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2308.656281][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2308.656284][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2308.656291][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2308.656295][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2308.656302][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2308.656306][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2308.656311][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2308.656319][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2308.656323][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2308.656333][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2308.656337][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2308.656344][ C0] ksys_unshare (kernel/fork.c:3121) [ 2308.656348][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2308.656352][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2308.656357][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2308.656360][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2308.656364][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2308.656371][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2308.656375][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2308.656381][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2308.656386][ C0] RIP: 0033:0x7f439756d93b [ 2308.656391][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2308.656394][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2308.656397][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2308.656399][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2308.656402][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2308.656404][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2308.656405][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2312.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2312.669152][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2312.669156][ C2] softirqs last disabled at (0): 0x0 | [ 2312.669169][ C2] Tainted: [L]=SOFTLOCKUP [ 2312.669171][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2312.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2312.669184][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2312.669188][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2312.669192][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2312.669194][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2312.669196][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2312.669199][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2312.669201][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2312.669203][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2312.669205][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2312.669210][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2312.669212][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2312.669213][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2312.669215][ C2] PKRU: 55555554 [ 2312.669217][ C2] Call Trace: [ 2312.669222][ C2] [ 2312.669227][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2312.669231][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2312.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2312.669241][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2312.669249][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2312.669253][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2312.669256][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2312.669259][ C2] ? xa_store (lib/xarray.c:1734) [ 2312.669266][ C2] xa_store (lib/xarray.c:1734) [ 2312.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2312.669277][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2312.669282][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2312.669285][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2312.669288][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2312.669295][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2312.669299][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2312.669307][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2312.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2312.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2312.669323][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2312.669327][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2312.669337][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2312.669341][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2312.669348][ C2] ksys_unshare (kernel/fork.c:3121) [ 2312.669353][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2312.669356][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2312.669361][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2312.669365][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2312.669369][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2312.669376][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2312.669380][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2312.669386][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2312.669392][ C2] RIP: 0033:0x7f439756d93b [ 2312.669397][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2312.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2312.669404][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2312.669406][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2312.669408][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2312.669410][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2312.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2320.669140][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2320.669149][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2320.669153][ C1] softirqs last disabled at (0): 0x0 | [ 2320.669167][ C1] Tainted: [L]=SOFTLOCKUP [ 2320.669168][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2320.669171][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2320.669181][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2320.669185][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2320.669188][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2320.669191][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2320.669193][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2320.669195][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2320.669197][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2320.669199][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2320.669202][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2320.669205][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2320.669207][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2320.669209][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2320.669211][ C1] PKRU: 55555554 [ 2320.669212][ C1] Call Trace: [ 2320.669216][ C1] [ 2320.669220][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2320.669224][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2320.669230][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2320.669234][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2320.669242][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2320.669245][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2320.669248][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2320.669251][ C1] ? xa_store (lib/xarray.c:1734) [ 2320.669258][ C1] xa_store (lib/xarray.c:1734) [ 2320.669262][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2320.669268][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2320.669274][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2320.669276][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2320.669279][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.669286][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.669290][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2320.669298][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2320.669302][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2320.669307][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2320.669314][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2320.669319][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2320.669328][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2320.669333][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2320.669340][ C1] ksys_unshare (kernel/fork.c:3121) [ 2320.669345][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2320.669349][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2320.669354][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2320.669358][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2320.669361][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2320.669369][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2320.669373][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2320.669379][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2320.669384][ C1] RIP: 0033:0x7f439756d93b [ 2320.669389][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2320.669392][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2320.669395][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2320.669397][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2320.669399][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2320.669401][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2320.669403][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2320.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2320.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2320.670146][ C3] softirqs last disabled at (0): 0x0 | [ 2320.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 2320.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2320.670163][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 2320.670170][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 2320.670174][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 2320.670177][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2320.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2320.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2320.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2320.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2320.670187][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2320.670190][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2320.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2320.670196][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2320.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2320.670199][ C3] PKRU: 55555554 [ 2320.670200][ C3] Call Trace: [ 2320.670204][ C3] [ 2320.670206][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2320.670213][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2320.670218][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2320.670222][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2320.670226][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2320.670230][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2320.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2320.670238][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2320.670242][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2320.670245][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2320.670249][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2320.670251][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2320.670254][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2320.670257][ C3] ? xas_alloc (lib/xarray.c:378) [ 2320.670262][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2320.670267][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2320.670270][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2320.670274][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2320.670279][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2320.670283][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2320.670289][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670293][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2320.670300][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2320.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2320.670312][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2320.670315][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2320.670318][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2320.670321][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2320.670327][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2320.670330][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2320.670333][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2320.670337][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2320.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2320.670345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2320.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2320.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670354][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2320.670359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2320.670363][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2320.670366][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2320.670371][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2320.670375][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670379][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2320.670384][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2320.670388][ C3] handle_softirqs (kernel/softirq.c:579) [ 2320.670394][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2320.670397][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2320.670401][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2320.670404][ C3] [ 2320.670406][ C3] [ 2320.670408][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2320.670413][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2320.670417][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2320.670419][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2320.670423][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2320.670425][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2320.670426][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2320.670428][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2320.670430][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2320.670434][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2320.670440][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2320.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2320.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 2320.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 2320.670457][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2320.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 2320.670464][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2320.670469][ C3] xas_alloc (lib/xarray.c:378) [ 2320.670474][ C3] xas_create (lib/xarray.c:685) [ 2320.670480][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2320.670484][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2320.670488][ C3] __xa_store (lib/xarray.c:1703) [ 2320.670492][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2320.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2320.670500][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2320.670503][ C3] ? xa_store (lib/xarray.c:1734) [ 2320.670508][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2320.670511][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2320.670515][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2320.670520][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2320.670522][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2320.670526][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670530][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2320.670533][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2320.670538][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2320.670542][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2320.670547][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2320.670551][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2320.670555][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2320.670563][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2320.670567][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2320.670573][ C3] ksys_unshare (kernel/fork.c:3121) [ 2320.670577][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2320.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2320.670584][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2320.670587][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2320.670591][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2320.670597][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2320.670601][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2320.670606][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2320.670610][ C3] RIP: 0033:0x7f439756d93b [ 2320.670613][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2320.670615][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2320.670618][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2320.670620][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2320.670622][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2320.670624][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2320.670627][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2336.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2336.656148][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2336.656152][ C0] softirqs last disabled at (0): 0x0 | [ 2336.656166][ C0] Tainted: [L]=SOFTLOCKUP [ 2336.656168][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2336.656170][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2336.656179][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2336.656183][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2336.656186][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2336.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2336.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2336.656193][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2336.656195][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2336.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2336.656200][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2336.656205][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2336.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2336.656209][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2336.656211][ C0] PKRU: 55555554 [ 2336.656212][ C0] Call Trace: [ 2336.656216][ C0] [ 2336.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2336.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2336.656230][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2336.656234][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2336.656243][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2336.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2336.656250][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2336.656253][ C0] ? xa_store (lib/xarray.c:1734) [ 2336.656260][ C0] xa_store (lib/xarray.c:1734) [ 2336.656264][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2336.656270][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2336.656275][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2336.656278][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2336.656281][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2336.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2336.656292][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2336.656300][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2336.656304][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2336.656309][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2336.656316][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2336.656321][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2336.656331][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2336.656335][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2336.656342][ C0] ksys_unshare (kernel/fork.c:3121) [ 2336.656347][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2336.656351][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2336.656356][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2336.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2336.656363][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2336.656370][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2336.656374][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2336.656380][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2336.656386][ C0] RIP: 0033:0x7f439756d93b [ 2336.656389][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2336.656392][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2336.656395][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2336.656397][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2336.656399][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2336.656401][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2336.656403][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2340.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2340.669150][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2340.669154][ C2] softirqs last disabled at (0): 0x0 | [ 2340.669168][ C2] Tainted: [L]=SOFTLOCKUP [ 2340.669170][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2340.669173][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2340.669183][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2340.669186][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2340.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2340.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2340.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2340.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2340.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2340.669200][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2340.669203][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2340.669207][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2340.669209][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2340.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2340.669212][ C2] PKRU: 55555554 [ 2340.669213][ C2] Call Trace: [ 2340.669219][ C2] [ 2340.669224][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2340.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2340.669234][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2340.669238][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2340.669246][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2340.669250][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2340.669253][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2340.669256][ C2] ? xa_store (lib/xarray.c:1734) [ 2340.669263][ C2] xa_store (lib/xarray.c:1734) [ 2340.669268][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2340.669274][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2340.669280][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2340.669283][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2340.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2340.669293][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2340.669296][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2340.669304][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2340.669308][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2340.669314][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2340.669321][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2340.669326][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2340.669336][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2340.669339][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2340.669346][ C2] ksys_unshare (kernel/fork.c:3121) [ 2340.669351][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2340.669355][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2340.669360][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2340.669363][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2340.669367][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2340.669374][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2340.669378][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2340.669385][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2340.669390][ C2] RIP: 0033:0x7f439756d93b [ 2340.669396][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2340.669399][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2340.669402][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2340.669404][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2340.669406][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2340.669408][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2340.669410][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2348.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2348.669149][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2348.669153][ C1] softirqs last disabled at (0): 0x0 | [ 2348.669166][ C1] Tainted: [L]=SOFTLOCKUP [ 2348.669168][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2348.669171][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2348.669181][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2348.669185][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2348.669188][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2348.669190][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2348.669192][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2348.669195][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2348.669197][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2348.669199][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2348.669201][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2348.669205][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2348.669207][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2348.669209][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2348.669211][ C1] PKRU: 55555554 [ 2348.669212][ C1] Call Trace: [ 2348.669216][ C1] [ 2348.669220][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2348.669225][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2348.669230][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2348.669235][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2348.669243][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2348.669247][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2348.669250][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2348.669253][ C1] ? xa_store (lib/xarray.c:1734) [ 2348.669260][ C1] xa_store (lib/xarray.c:1734) [ 2348.669265][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2348.669271][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2348.669276][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2348.669279][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2348.669282][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.669290][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.669293][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2348.669301][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2348.669305][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2348.669310][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2348.669317][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2348.669322][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2348.669332][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2348.669336][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2348.669343][ C1] ksys_unshare (kernel/fork.c:3121) [ 2348.669348][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2348.669351][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2348.669357][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2348.669360][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2348.669364][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2348.669371][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2348.669375][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2348.669381][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2348.669386][ C1] RIP: 0033:0x7f439756d93b [ 2348.669391][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2348.669393][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2348.669397][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2348.669399][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2348.669401][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2348.669404][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2348.669406][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2348.670132][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2348.670139][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2348.670143][ C3] softirqs last disabled at (0): 0x0 | [ 2348.670155][ C3] Tainted: [L]=SOFTLOCKUP [ 2348.670156][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2348.670158][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2348.670165][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2348.670168][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2348.670171][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2348.670173][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2348.670175][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2348.670177][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2348.670179][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2348.670181][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2348.670183][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2348.670187][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2348.670190][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2348.670191][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2348.670193][ C3] PKRU: 55555554 [ 2348.670194][ C3] Call Trace: [ 2348.670198][ C3] [ 2348.670200][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2348.670205][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2348.670210][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2348.670213][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2348.670218][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2348.670222][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2348.670226][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2348.670230][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2348.670233][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2348.670236][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2348.670238][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2348.670241][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2348.670244][ C3] ? xas_alloc (lib/xarray.c:378) [ 2348.670250][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2348.670254][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2348.670257][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2348.670261][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2348.670266][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2348.670271][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2348.670276][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670281][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2348.670287][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2348.670293][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670296][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2348.670299][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2348.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2348.670306][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2348.670309][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2348.670314][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2348.670317][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2348.670320][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2348.670325][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2348.670329][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2348.670333][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2348.670335][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2348.670339][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670342][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2348.670347][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2348.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2348.670354][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2348.670359][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2348.670363][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670367][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2348.670371][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2348.670376][ C3] handle_softirqs (kernel/softirq.c:579) [ 2348.670382][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2348.670386][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2348.670389][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2348.670393][ C3] [ 2348.670394][ C3] [ 2348.670396][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2348.670401][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2348.670404][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2348.670407][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2348.670410][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2348.670413][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2348.670415][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2348.670417][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2348.670419][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2348.670423][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2348.670429][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2348.670434][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2348.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 2348.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 2348.670445][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2348.670450][ C3] ? xas_alloc (lib/xarray.c:378) [ 2348.670452][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2348.670458][ C3] xas_alloc (lib/xarray.c:378) [ 2348.670463][ C3] xas_create (lib/xarray.c:685) [ 2348.670469][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2348.670473][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2348.670477][ C3] __xa_store (lib/xarray.c:1703) [ 2348.670482][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2348.670486][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2348.670489][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2348.670492][ C3] ? xa_store (lib/xarray.c:1734) [ 2348.670497][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2348.670501][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2348.670504][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2348.670509][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2348.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2348.670514][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2348.670522][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2348.670527][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2348.670531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2348.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2348.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2348.670544][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2348.670552][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2348.670556][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2348.670561][ C3] ksys_unshare (kernel/fork.c:3121) [ 2348.670565][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2348.670569][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2348.670572][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2348.670575][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2348.670578][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2348.670585][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2348.670589][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2348.670594][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2348.670597][ C3] RIP: 0033:0x7f439756d93b [ 2348.670601][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2348.670604][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2348.670607][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2348.670609][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2348.670611][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2348.670613][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2348.670615][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2364.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2364.656148][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2364.656152][ C0] softirqs last disabled at (0): 0x0 | [ 2364.656165][ C0] Tainted: [L]=SOFTLOCKUP [ 2364.656167][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2364.656170][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:86 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2364.656176][ C0] Code: d0 74 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea 09 48 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 All code ======== 0: d0 74 11 80 shlb $1,-0x80(%rcx,%rdx,1) 4: 38 00 cmp %al,(%rax) 6: 74 ef je 0xfffffffffffffff7 8: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 c: 48 89 c2 mov %rax,%rdx f: 48 85 c0 test %rax,%rax 12: 75 b0 jne 0xffffffffffffffc4 14: 48 89 da mov %rbx,%rdx 17: 4c 89 d8 mov %r11,%rax 1a: 4c 29 da sub %r11,%rdx 1d: e9 49 ff ff ff jmp 0xffffffffffffff6b 22: 48 85 d2 test %rdx,%rdx 25: 74 b3 je 0xffffffffffffffda 27: 48 01 ea add %rbp,%rdx 2a:* eb 09 jmp 0x35 <-- trapping instruction 2c: 48 83 c0 01 add $0x1,%rax 30: 48 39 d0 cmp %rdx,%rax 33: 74 a5 je 0xffffffffffffffda 35: 80 38 00 cmpb $0x0,(%rax) 38: 74 f2 je 0x2c 3a: e9 74 ff ff ff jmp 0xffffffffffffffb3 3f: b8 .byte 0xb8 Code starting with the faulting instruction =========================================== 0: eb 09 jmp 0xb 2: 48 83 c0 01 add $0x1,%rax 6: 48 39 d0 cmp %rdx,%rax 9: 74 a5 je 0xffffffffffffffb0 b: 80 38 00 cmpb $0x0,(%rax) e: 74 f2 je 0x2 10: e9 74 ff ff ff jmp 0xffffffffffffff89 15: b8 .byte 0xb8 [ 2364.656179][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000286 [ 2364.656183][ C0] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2364.656185][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2364.656187][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2364.656189][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2364.656191][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2364.656194][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2364.656197][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2364.656201][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2364.656203][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2364.656205][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2364.656207][ C0] PKRU: 55555554 [ 2364.656209][ C0] Call Trace: [ 2364.656213][ C0] [ 2364.656216][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2364.656226][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2364.656229][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2364.656235][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2364.656239][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2364.656247][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2364.656250][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2364.656253][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2364.656256][ C0] ? xa_store (lib/xarray.c:1734) [ 2364.656263][ C0] xa_store (lib/xarray.c:1734) [ 2364.656268][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2364.656273][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2364.656279][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2364.656282][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2364.656285][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2364.656291][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2364.656295][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2364.656303][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2364.656306][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2364.656311][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2364.656318][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2364.656323][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2364.656332][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2364.656336][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2364.656342][ C0] ksys_unshare (kernel/fork.c:3121) [ 2364.656347][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2364.656351][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2364.656355][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2364.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2364.656362][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2364.656369][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2364.656373][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2364.656379][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2364.656384][ C0] RIP: 0033:0x7f439756d93b [ 2364.656389][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2364.656392][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2364.656395][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2364.656397][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2364.656399][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2364.656401][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2364.656403][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2368.669140][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2368.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2368.669152][ C2] softirqs last disabled at (0): 0x0 | [ 2368.669166][ C2] Tainted: [L]=SOFTLOCKUP [ 2368.669168][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2368.669170][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2368.669180][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2368.669183][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2368.669187][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2368.669190][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2368.669192][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2368.669194][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2368.669196][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2368.669198][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2368.669200][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2368.669205][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2368.669207][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2368.669209][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2368.669210][ C2] PKRU: 55555554 [ 2368.669212][ C2] Call Trace: [ 2368.669217][ C2] [ 2368.669221][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2368.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2368.669231][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2368.669236][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2368.669243][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2368.669246][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2368.669249][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2368.669252][ C2] ? xa_store (lib/xarray.c:1734) [ 2368.669259][ C2] xa_store (lib/xarray.c:1734) [ 2368.669264][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2368.669270][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2368.669275][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2368.669278][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2368.669281][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2368.669288][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2368.669291][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2368.669299][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2368.669303][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2368.669308][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2368.669316][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2368.669321][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2368.669330][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2368.669335][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2368.669341][ C2] ksys_unshare (kernel/fork.c:3121) [ 2368.669346][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2368.669350][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2368.669355][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2368.669359][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2368.669362][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2368.669369][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2368.669373][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2368.669379][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2368.669385][ C2] RIP: 0033:0x7f439756d93b [ 2368.669391][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2368.669394][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2368.669397][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2368.669399][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2368.669401][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2368.669403][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2368.669405][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2374.313352][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2374.313637][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2374.313882][ C1] NMI backtrace for cpu 1 | [ 2374.313903][ C1] Tainted: [L]=SOFTLOCKUP [ 2374.313904][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2374.313908][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2374.313920][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2374.313924][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2374.313928][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2374.313930][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2374.313932][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2374.313935][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2374.313937][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2374.313939][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2374.313941][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2374.313945][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2374.313947][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2374.313948][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2374.313950][ C1] PKRU: 55555554 [ 2374.313951][ C1] Call Trace: [ 2374.313953][ C1] [ 2374.313955][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2374.313959][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2374.313965][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2374.313969][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2374.313977][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2374.313980][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2374.313983][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2374.313985][ C1] ? xa_store (lib/xarray.c:1734) [ 2374.313993][ C1] xa_store (lib/xarray.c:1734) [ 2374.313997][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2374.314002][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2374.314007][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2374.314010][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2374.314013][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.314020][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.314023][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2374.314030][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2374.314034][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2374.314039][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2374.314045][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2374.314050][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2374.314059][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2374.314063][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2374.314070][ C1] ksys_unshare (kernel/fork.c:3121) [ 2374.314077][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2374.314081][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2374.314086][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2374.314089][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2374.314093][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2374.314100][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2374.314104][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2374.314109][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2374.314114][ C1] RIP: 0033:0x7f439756d93b [ 2374.314120][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2374.314123][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2374.314126][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2374.314128][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2374.314130][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2374.314131][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2374.314133][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2374.314131][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2374.314133][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2374.314139][ C1] | [ 2374.314887][ C3] Tainted: [L]=SOFTLOCKUP [ 2374.314889][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2374.314891][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2374.314897][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2374.314901][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2374.314905][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2374.314907][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2374.314910][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2374.314912][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2374.314914][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2374.314916][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2374.314918][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2374.314922][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2374.314924][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2374.314926][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2374.314928][ C3] PKRU: 55555554 [ 2374.314929][ C3] Call Trace: [ 2374.314931][ C3] [ 2374.314932][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2374.314937][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2374.314942][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2374.314945][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2374.314948][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2374.314953][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2374.314956][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2374.314960][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2374.314963][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2374.314967][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2374.314969][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2374.314972][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2374.314975][ C3] ? xas_alloc (lib/xarray.c:378) [ 2374.314980][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2374.314984][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2374.314987][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2374.314991][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2374.314996][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2374.315000][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2374.315005][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315009][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2374.315015][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2374.315020][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315023][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2374.315026][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2374.315029][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2374.315033][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2374.315035][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2374.315042][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2374.315045][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2374.315048][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2374.315053][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2374.315057][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2374.315061][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2374.315064][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2374.315068][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315071][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2374.315076][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2374.315080][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2374.315083][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2374.315088][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2374.315092][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315095][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2374.315100][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2374.315105][ C3] handle_softirqs (kernel/softirq.c:579) [ 2374.315111][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2374.315114][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2374.315118][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2374.315121][ C3] [ 2374.315123][ C3] [ 2374.315124][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2374.315128][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2374.315132][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2374.315135][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2374.315137][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2374.315139][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2374.315141][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2374.315142][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2374.315144][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2374.315149][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2374.315155][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2374.315160][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2374.315164][ C3] ? xas_alloc (lib/xarray.c:378) [ 2374.315169][ C3] ? xas_alloc (lib/xarray.c:378) [ 2374.315171][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2374.315175][ C3] ? xas_alloc (lib/xarray.c:378) [ 2374.315178][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2374.315183][ C3] xas_alloc (lib/xarray.c:378) [ 2374.315187][ C3] xas_create (lib/xarray.c:685) [ 2374.315193][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2374.315197][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2374.315201][ C3] __xa_store (lib/xarray.c:1703) [ 2374.315205][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2374.315209][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2374.315212][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2374.315215][ C3] ? xa_store (lib/xarray.c:1734) [ 2374.315220][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2374.315224][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2374.315227][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2374.315231][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2374.315234][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2374.315237][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315241][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2374.315244][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2374.315249][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2374.315253][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2374.315258][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2374.315261][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2374.315266][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2374.315273][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2374.315277][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2374.315282][ C3] ksys_unshare (kernel/fork.c:3121) [ 2374.315287][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2374.315291][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2374.315294][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2374.315297][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2374.315300][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2374.315307][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2374.315310][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2374.315315][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2374.315318][ C3] RIP: 0033:0x7f439756d93b [ 2374.315322][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2374.315324][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2374.315327][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2374.315329][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2374.315330][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2374.315332][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2374.315333][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2392.656142][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2392.656152][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2392.656156][ C0] softirqs last disabled at (0): 0x0 | [ 2392.656170][ C0] Tainted: [L]=SOFTLOCKUP [ 2392.656172][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2392.656175][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2392.656186][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2392.656189][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2392.656193][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2392.656195][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2392.656197][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2392.656199][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2392.656202][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2392.656204][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2392.656206][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2392.656210][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2392.656212][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2392.656214][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2392.656215][ C0] PKRU: 55555554 [ 2392.656217][ C0] Call Trace: [ 2392.656223][ C0] [ 2392.656227][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2392.656231][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2392.656237][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2392.656242][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2392.656250][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2392.656254][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2392.656257][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2392.656260][ C0] ? xa_store (lib/xarray.c:1734) [ 2392.656267][ C0] xa_store (lib/xarray.c:1734) [ 2392.656272][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2392.656279][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2392.656284][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2392.656287][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2392.656290][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2392.656297][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2392.656301][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2392.656309][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2392.656313][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2392.656318][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2392.656325][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2392.656330][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2392.656340][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2392.656344][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2392.656351][ C0] ksys_unshare (kernel/fork.c:3121) [ 2392.656356][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2392.656360][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2392.656365][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2392.656369][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2392.656372][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2392.656380][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2392.656384][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2392.656390][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2392.656401][ C0] RIP: 0033:0x7f439756d93b [ 2392.656406][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2392.656409][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2392.656412][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2392.656414][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2392.656417][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2392.656419][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2392.656421][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2396.669148][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2396.669157][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2396.669161][ C2] softirqs last disabled at (0): 0x0 | [ 2396.669174][ C2] Tainted: [L]=SOFTLOCKUP [ 2396.669176][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2396.669179][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2396.669188][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2396.669192][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2396.669195][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2396.669198][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2396.669200][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2396.669202][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2396.669204][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2396.669206][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2396.669209][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2396.669212][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2396.669214][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2396.669216][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2396.669218][ C2] PKRU: 55555554 [ 2396.669219][ C2] Call Trace: [ 2396.669223][ C2] [ 2396.669227][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2396.669231][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2396.669237][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2396.669241][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2396.669248][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2396.669252][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2396.669255][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2396.669258][ C2] ? xa_store (lib/xarray.c:1734) [ 2396.669265][ C2] xa_store (lib/xarray.c:1734) [ 2396.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2396.669276][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2396.669282][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2396.669284][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2396.669287][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2396.669295][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2396.669298][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2396.669306][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2396.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2396.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2396.669322][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2396.669327][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2396.669337][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2396.669341][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2396.669347][ C2] ksys_unshare (kernel/fork.c:3121) [ 2396.669352][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2396.669356][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2396.669361][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2396.669364][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2396.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2396.669376][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2396.669380][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2396.669386][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2396.669391][ C2] RIP: 0033:0x7f439756d93b [ 2396.669396][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2396.669398][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2396.669402][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2396.669404][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2396.669406][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2396.669407][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2396.669410][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2400.669140][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2400.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2400.669154][ C1] softirqs last disabled at (0): 0x0 | [ 2400.669168][ C1] Tainted: [L]=SOFTLOCKUP [ 2400.669170][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2400.669173][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2400.669184][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2400.669187][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2400.669191][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2400.669193][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2400.669195][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2400.669197][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2400.669199][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2400.669202][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2400.669204][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2400.669208][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2400.669210][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2400.669212][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2400.669214][ C1] PKRU: 55555554 [ 2400.669215][ C1] Call Trace: [ 2400.669220][ C1] [ 2400.669224][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2400.669229][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2400.669234][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2400.669238][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2400.669247][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2400.669251][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2400.669253][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2400.669256][ C1] ? xa_store (lib/xarray.c:1734) [ 2400.669264][ C1] xa_store (lib/xarray.c:1734) [ 2400.669269][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2400.669275][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2400.669280][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2400.669283][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2400.669285][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.669292][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.669296][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2400.669304][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2400.669307][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2400.669312][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2400.669320][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2400.669325][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2400.669334][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2400.669338][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2400.669345][ C1] ksys_unshare (kernel/fork.c:3121) [ 2400.669350][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2400.669354][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2400.669359][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2400.669362][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2400.669366][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2400.669373][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2400.669377][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2400.669384][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2400.669389][ C1] RIP: 0033:0x7f439756d93b [ 2400.669394][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2400.669397][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2400.669400][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2400.669402][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2400.669404][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2400.669406][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2400.669408][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2400.670128][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2400.670134][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2400.670138][ C3] softirqs last disabled at (0): 0x0 | [ 2400.670149][ C3] Tainted: [L]=SOFTLOCKUP [ 2400.670150][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2400.670152][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2400.670158][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2400.670161][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2400.670164][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2400.670167][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2400.670169][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2400.670171][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2400.670173][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2400.670175][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2400.670178][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2400.670182][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2400.670184][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2400.670186][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2400.670187][ C3] PKRU: 55555554 [ 2400.670188][ C3] Call Trace: [ 2400.670191][ C3] [ 2400.670193][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2400.670199][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2400.670205][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2400.670208][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2400.670213][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2400.670219][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2400.670222][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2400.670226][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2400.670230][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2400.670234][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2400.670236][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2400.670239][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2400.670242][ C3] ? xas_alloc (lib/xarray.c:378) [ 2400.670248][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2400.670252][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2400.670255][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2400.670258][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2400.670264][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2400.670268][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2400.670274][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670278][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2400.670284][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2400.670288][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670291][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2400.670294][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2400.670298][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2400.670302][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2400.670304][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2400.670311][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2400.670315][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2400.670318][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2400.670322][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2400.670327][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2400.670330][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2400.670333][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2400.670338][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670342][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2400.670346][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2400.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2400.670354][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2400.670359][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2400.670363][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670367][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2400.670372][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2400.670376][ C3] handle_softirqs (kernel/softirq.c:579) [ 2400.670383][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2400.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2400.670390][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2400.670394][ C3] [ 2400.670396][ C3] [ 2400.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2400.670402][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2400.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2400.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2400.670412][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2400.670414][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2400.670416][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2400.670418][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2400.670420][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2400.670424][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2400.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2400.670437][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2400.670440][ C3] ? xas_alloc (lib/xarray.c:378) [ 2400.670445][ C3] ? xas_alloc (lib/xarray.c:378) [ 2400.670448][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2400.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 2400.670454][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2400.670460][ C3] xas_alloc (lib/xarray.c:378) [ 2400.670465][ C3] xas_create (lib/xarray.c:685) [ 2400.670471][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2400.670476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2400.670479][ C3] __xa_store (lib/xarray.c:1703) [ 2400.670483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2400.670488][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2400.670491][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2400.670494][ C3] ? xa_store (lib/xarray.c:1734) [ 2400.670499][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2400.670503][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2400.670506][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2400.670511][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2400.670514][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2400.670517][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670522][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2400.670525][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2400.670530][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2400.670534][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2400.670538][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2400.670542][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2400.670547][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2400.670554][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2400.670558][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2400.670562][ C3] ksys_unshare (kernel/fork.c:3121) [ 2400.670567][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2400.670570][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2400.670574][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2400.670576][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2400.670580][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2400.670585][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2400.670589][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2400.670594][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2400.670597][ C3] RIP: 0033:0x7f439756d93b [ 2400.670602][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2400.670604][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2400.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2400.670610][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2400.670612][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2400.670614][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2400.670615][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2420.656140][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2420.656151][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2420.656155][ C0] softirqs last disabled at (0): 0x0 | [ 2420.656169][ C0] Tainted: [L]=SOFTLOCKUP [ 2420.656171][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2420.656173][ C0] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 2420.656181][ C0] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 2420.656184][ C0] RSP: 0018:ffffc900034c7a10 EFLAGS: 00000202 [ 2420.656188][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2420.656190][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2420.656192][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2420.656194][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2420.656202][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2420.656204][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2420.656207][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2420.656211][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2420.656213][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2420.656215][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2420.656217][ C0] PKRU: 55555554 [ 2420.656218][ C0] Call Trace: [ 2420.656223][ C0] [ 2420.656225][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2420.656236][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2420.656240][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2420.656245][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2420.656250][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2420.656257][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2420.656261][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2420.656264][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2420.656268][ C0] ? xa_store (lib/xarray.c:1734) [ 2420.656275][ C0] xa_store (lib/xarray.c:1734) [ 2420.656279][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2420.656285][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2420.656291][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2420.656294][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2420.656297][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2420.656304][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2420.656307][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2420.656316][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2420.656319][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2420.656324][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2420.656332][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2420.656337][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2420.656347][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2420.656351][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2420.656358][ C0] ksys_unshare (kernel/fork.c:3121) [ 2420.656363][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2420.656366][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2420.656372][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2420.656375][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2420.656379][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2420.656387][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2420.656391][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2420.656397][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2420.656402][ C0] RIP: 0033:0x7f439756d93b [ 2420.656407][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2420.656410][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2420.656413][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2420.656415][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2420.656417][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2420.656419][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2420.656421][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2424.669138][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2424.669147][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2424.669151][ C2] softirqs last disabled at (0): 0x0 | [ 2424.669165][ C2] Tainted: [L]=SOFTLOCKUP [ 2424.669166][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2424.669169][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2424.669178][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2424.669181][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2424.669185][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2424.669187][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2424.669189][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2424.669191][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2424.669193][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2424.669195][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2424.669198][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2424.669202][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2424.669204][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2424.669205][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2424.669207][ C2] PKRU: 55555554 [ 2424.669209][ C2] Call Trace: [ 2424.669214][ C2] [ 2424.669219][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2424.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2424.669229][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2424.669233][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2424.669241][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2424.669245][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2424.669248][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2424.669251][ C2] ? xa_store (lib/xarray.c:1734) [ 2424.669258][ C2] xa_store (lib/xarray.c:1734) [ 2424.669263][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2424.669269][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2424.669275][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2424.669278][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2424.669281][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2424.669288][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2424.669291][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2424.669299][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2424.669304][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2424.669309][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2424.669316][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2424.669321][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2424.669331][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2424.669335][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2424.669342][ C2] ksys_unshare (kernel/fork.c:3121) [ 2424.669347][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2424.669351][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2424.669356][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2424.669359][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2424.669363][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2424.669370][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2424.669374][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2424.669380][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2424.669386][ C2] RIP: 0033:0x7f439756d93b [ 2424.669391][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2424.669394][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2424.669397][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2424.669399][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2424.669401][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2424.669403][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2424.669405][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2428.669140][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2428.669150][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2428.669154][ C1] softirqs last disabled at (0): 0x0 | [ 2428.669168][ C1] Tainted: [L]=SOFTLOCKUP [ 2428.669169][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2428.669172][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 2428.669179][ C1] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 2428.669182][ C1] RSP: 0018:ffffc900034b7a00 EFLAGS: 00000282 [ 2428.669186][ C1] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2428.669188][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2428.669190][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2428.669193][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2428.669195][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2428.669197][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2428.669200][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2428.669204][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2428.669206][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2428.669208][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2428.669210][ C1] PKRU: 55555554 [ 2428.669211][ C1] Call Trace: [ 2428.669215][ C1] [ 2428.669218][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2428.669228][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2428.669232][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2428.669237][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2428.669242][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2428.669249][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2428.669252][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2428.669255][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2428.669258][ C1] ? xa_store (lib/xarray.c:1734) [ 2428.669266][ C1] xa_store (lib/xarray.c:1734) [ 2428.669270][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2428.669276][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2428.669281][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2428.669284][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2428.669287][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.669295][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.669298][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2428.669306][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2428.669310][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2428.669315][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2428.669323][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2428.669328][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2428.669337][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2428.669341][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2428.669347][ C1] ksys_unshare (kernel/fork.c:3121) [ 2428.669352][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2428.669355][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2428.669361][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2428.669364][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2428.669368][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2428.669375][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2428.669379][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2428.669384][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2428.669389][ C1] RIP: 0033:0x7f439756d93b [ 2428.669394][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2428.669397][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2428.669400][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2428.669402][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2428.669404][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2428.669406][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2428.669408][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2428.670126][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2428.670132][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2428.670135][ C3] softirqs last disabled at (0): 0x0 | [ 2428.670145][ C3] Tainted: [L]=SOFTLOCKUP [ 2428.670147][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2428.670149][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2428.670155][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2428.670158][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2428.670161][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2428.670163][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2428.670165][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2428.670167][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2428.670169][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2428.670171][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2428.670173][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2428.670177][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2428.670179][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2428.670181][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2428.670183][ C3] PKRU: 55555554 [ 2428.670184][ C3] Call Trace: [ 2428.670186][ C3] [ 2428.670188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2428.670194][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2428.670200][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2428.670203][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2428.670209][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2428.670214][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2428.670218][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2428.670222][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2428.670225][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2428.670228][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2428.670231][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2428.670234][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2428.670237][ C3] ? xas_alloc (lib/xarray.c:378) [ 2428.670242][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2428.670246][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2428.670249][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2428.670252][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2428.670257][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2428.670262][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2428.670268][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670272][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2428.670278][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2428.670282][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670286][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2428.670289][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2428.670293][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2428.670296][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2428.670299][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2428.670306][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2428.670309][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2428.670312][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2428.670317][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2428.670321][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2428.670324][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2428.670327][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2428.670331][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670334][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2428.670338][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2428.670343][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2428.670346][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2428.670351][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2428.670356][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670359][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2428.670364][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2428.670368][ C3] handle_softirqs (kernel/softirq.c:579) [ 2428.670374][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2428.670377][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2428.670380][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2428.670384][ C3] [ 2428.670385][ C3] [ 2428.670387][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2428.670391][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2428.670395][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2428.670397][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2428.670400][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2428.670401][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2428.670403][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2428.670405][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2428.670407][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2428.670411][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2428.670416][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2428.670422][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2428.670426][ C3] ? xas_alloc (lib/xarray.c:378) [ 2428.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 2428.670434][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2428.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 2428.670441][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2428.670446][ C3] xas_alloc (lib/xarray.c:378) [ 2428.670451][ C3] xas_create (lib/xarray.c:685) [ 2428.670457][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2428.670461][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2428.670465][ C3] __xa_store (lib/xarray.c:1703) [ 2428.670469][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2428.670474][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2428.670476][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2428.670480][ C3] ? xa_store (lib/xarray.c:1734) [ 2428.670484][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2428.670488][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2428.670491][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2428.670496][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2428.670499][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2428.670502][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670506][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2428.670509][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2428.670514][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2428.670517][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2428.670522][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2428.670526][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2428.670530][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2428.670537][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2428.670541][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2428.670545][ C3] ksys_unshare (kernel/fork.c:3121) [ 2428.670549][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2428.670553][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2428.670556][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2428.670559][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2428.670562][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2428.670568][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2428.670571][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2428.670576][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2428.670579][ C3] RIP: 0033:0x7f439756d93b [ 2428.670583][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2428.670586][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2428.670589][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2428.670591][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2428.670593][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2428.670595][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2428.670597][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2448.656141][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2448.656151][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2448.656155][ C0] softirqs last disabled at (0): 0x0 | [ 2448.656168][ C0] Tainted: [L]=SOFTLOCKUP [ 2448.656170][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2448.656172][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2448.656182][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2448.656186][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2448.656190][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2448.656192][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2448.656194][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2448.656196][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2448.656199][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2448.656201][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2448.656204][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2448.656208][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2448.656210][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2448.656212][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2448.656214][ C0] PKRU: 55555554 [ 2448.656215][ C0] Call Trace: [ 2448.656220][ C0] [ 2448.656224][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2448.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2448.656234][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2448.656239][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2448.656246][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2448.656250][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2448.656253][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2448.656256][ C0] ? xa_store (lib/xarray.c:1734) [ 2448.656263][ C0] xa_store (lib/xarray.c:1734) [ 2448.656267][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2448.656273][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2448.656279][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2448.656282][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2448.656285][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2448.656292][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2448.656295][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2448.656304][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2448.656308][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2448.656313][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2448.656321][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2448.656325][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2448.656335][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2448.656339][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2448.656346][ C0] ksys_unshare (kernel/fork.c:3121) [ 2448.656351][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2448.656355][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2448.656360][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2448.656363][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2448.656367][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2448.656375][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2448.656379][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2448.656385][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2448.656391][ C0] RIP: 0033:0x7f439756d93b [ 2448.656394][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2448.656397][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2448.656401][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2448.656403][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2448.656405][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2448.656407][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2448.656409][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2452.327700][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2452.328147][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2452.328398][ C1] NMI backtrace for cpu 1 | [ 2452.328413][ C1] Tainted: [L]=SOFTLOCKUP [ 2452.328415][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2452.328417][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2452.328426][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2452.328430][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2452.328434][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2452.328436][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2452.328438][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2452.328440][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2452.328442][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2452.328444][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2452.328447][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2452.328451][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2452.328452][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2452.328454][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2452.328456][ C1] PKRU: 55555554 [ 2452.328457][ C1] Call Trace: [ 2452.328458][ C1] [ 2452.328461][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2452.328464][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.328469][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.328473][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2452.328480][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2452.328483][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.328485][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.328488][ C1] ? xa_store (lib/xarray.c:1734) [ 2452.328495][ C1] xa_store (lib/xarray.c:1734) [ 2452.328499][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2452.328504][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2452.328509][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.328512][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.328515][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.328520][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.328523][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2452.328530][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2452.328534][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2452.328540][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2452.328547][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2452.328551][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2452.328559][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2452.328563][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2452.328570][ C1] ksys_unshare (kernel/fork.c:3121) [ 2452.328576][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2452.328580][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2452.328585][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2452.328589][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2452.328593][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2452.328600][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2452.328604][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2452.328609][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2452.328613][ C1] RIP: 0033:0x7f439756d93b [ 2452.328618][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2452.328620][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2452.328624][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2452.328625][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2452.328627][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2452.328629][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2452.328630][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2452.328629][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2452.328630][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2452.328636][ C1] | [ 2452.329400][ C3] Tainted: [L]=SOFTLOCKUP [ 2452.329402][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2452.329404][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2452.329408][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2452.329411][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2452.329414][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2452.329416][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2452.329418][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2452.329420][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2452.329422][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2452.329424][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2452.329426][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2452.329430][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2452.329432][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2452.329433][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2452.329435][ C3] PKRU: 55555554 [ 2452.329436][ C3] Call Trace: [ 2452.329438][ C3] [ 2452.329439][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2452.329446][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2452.329451][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2452.329454][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2452.329457][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2452.329463][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2452.329466][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2452.329470][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2452.329473][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2452.329476][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2452.329479][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2452.329481][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2452.329484][ C3] ? xas_alloc (lib/xarray.c:378) [ 2452.329489][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2452.329492][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.329495][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.329498][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2452.329503][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2452.329507][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2452.329512][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329515][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2452.329520][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2452.329525][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329528][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2452.329531][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2452.329534][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2452.329538][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2452.329540][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2452.329547][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2452.329550][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2452.329553][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2452.329557][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2452.329561][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2452.329564][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2452.329567][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2452.329571][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329575][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2452.329579][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2452.329583][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2452.329586][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2452.329591][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2452.329596][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329599][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2452.329604][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2452.329608][ C3] handle_softirqs (kernel/softirq.c:579) [ 2452.329613][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2452.329617][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2452.329620][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2452.329624][ C3] [ 2452.329625][ C3] [ 2452.329627][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2452.329631][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2452.329634][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2452.329637][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2452.329639][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2452.329641][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2452.329642][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2452.329644][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2452.329646][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2452.329650][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2452.329655][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2452.329660][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2452.329664][ C3] ? xas_alloc (lib/xarray.c:378) [ 2452.329669][ C3] ? xas_alloc (lib/xarray.c:378) [ 2452.329672][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2452.329675][ C3] ? xas_alloc (lib/xarray.c:378) [ 2452.329678][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2452.329683][ C3] xas_alloc (lib/xarray.c:378) [ 2452.329688][ C3] xas_create (lib/xarray.c:685) [ 2452.329693][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2452.329698][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.329701][ C3] __xa_store (lib/xarray.c:1703) [ 2452.329705][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2452.329710][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.329713][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.329716][ C3] ? xa_store (lib/xarray.c:1734) [ 2452.329721][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2452.329724][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2452.329727][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2452.329732][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.329735][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.329738][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329742][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.329745][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2452.329750][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2452.329754][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2452.329759][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2452.329763][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2452.329767][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2452.329773][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2452.329777][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2452.329781][ C3] ksys_unshare (kernel/fork.c:3121) [ 2452.329786][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2452.329789][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2452.329793][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2452.329795][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2452.329799][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2452.329805][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2452.329808][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2452.329813][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2452.329816][ C3] RIP: 0033:0x7f439756d93b [ 2452.329820][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2452.329822][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2452.329825][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2452.329827][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2452.329828][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2452.329830][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2452.329832][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2452.669141][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2452.669151][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2452.669155][ C2] softirqs last disabled at (0): 0x0 | [ 2452.669168][ C2] Tainted: [L]=SOFTLOCKUP [ 2452.669170][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2452.669172][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2452.669182][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2452.669186][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2452.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2452.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2452.669194][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2452.669196][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2452.669198][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2452.669201][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2452.669204][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2452.669208][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2452.669210][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2452.669211][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2452.669213][ C2] PKRU: 55555554 [ 2452.669214][ C2] Call Trace: [ 2452.669219][ C2] [ 2452.669224][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2452.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.669234][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.669238][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2452.669246][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2452.669250][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.669253][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2452.669256][ C2] ? xa_store (lib/xarray.c:1734) [ 2452.669263][ C2] xa_store (lib/xarray.c:1734) [ 2452.669268][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2452.669274][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2452.669279][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2452.669282][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2452.669285][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.669292][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2452.669296][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2452.669304][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2452.669308][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2452.669313][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2452.669321][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2452.669326][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2452.669336][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2452.669340][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2452.669347][ C2] ksys_unshare (kernel/fork.c:3121) [ 2452.669352][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2452.669355][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2452.669360][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2452.669364][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2452.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2452.669375][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2452.669379][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2452.669385][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2452.669391][ C2] RIP: 0033:0x7f439756d93b [ 2452.669397][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2452.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2452.669403][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2452.669405][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2452.669407][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2452.669409][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2452.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2476.656141][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2476.656150][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2476.656154][ C0] softirqs last disabled at (0): 0x0 | [ 2476.656167][ C0] Tainted: [L]=SOFTLOCKUP [ 2476.656169][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2476.656172][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2476.656182][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2476.656185][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2476.656188][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2476.656191][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2476.656193][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2476.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2476.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2476.656199][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2476.656202][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2476.656206][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2476.656208][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2476.656210][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2476.656212][ C0] PKRU: 55555554 [ 2476.656213][ C0] Call Trace: [ 2476.656218][ C0] [ 2476.656222][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2476.656226][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.656232][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.656236][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2476.656244][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2476.656248][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.656251][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.656254][ C0] ? xa_store (lib/xarray.c:1734) [ 2476.656261][ C0] xa_store (lib/xarray.c:1734) [ 2476.656265][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2476.656271][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2476.656276][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.656279][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.656282][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.656289][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.656292][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2476.656300][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2476.656304][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2476.656309][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2476.656317][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2476.656322][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2476.656331][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2476.656335][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2476.656342][ C0] ksys_unshare (kernel/fork.c:3121) [ 2476.656347][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2476.656351][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2476.656356][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2476.656359][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2476.656363][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2476.656370][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2476.656375][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2476.656381][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2476.656386][ C0] RIP: 0033:0x7f439756d93b [ 2476.656390][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2476.656393][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2476.656397][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2476.656399][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2476.656401][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2476.656403][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2476.656405][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2476.669125][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2476.669131][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2476.669134][ C1] softirqs last disabled at (0): 0x0 | [ 2476.669145][ C1] Tainted: [L]=SOFTLOCKUP [ 2476.669146][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2476.669149][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2476.669154][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2476.669157][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2476.669160][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2476.669162][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2476.669164][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2476.669166][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2476.669168][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2476.669170][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2476.669172][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2476.669176][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2476.669178][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2476.669179][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2476.669181][ C1] PKRU: 55555554 [ 2476.669182][ C1] Call Trace: [ 2476.669185][ C1] [ 2476.669188][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2476.669192][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.669196][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.669200][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2476.669205][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2476.669208][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.669211][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.669214][ C1] ? xa_store (lib/xarray.c:1734) [ 2476.669220][ C1] xa_store (lib/xarray.c:1734) [ 2476.669224][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2476.669228][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2476.669234][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.669237][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.669240][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.669244][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.669248][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2476.669254][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2476.669257][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2476.669262][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2476.669266][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2476.669271][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2476.669278][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2476.669281][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2476.669286][ C1] ksys_unshare (kernel/fork.c:3121) [ 2476.669291][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2476.669295][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2476.669299][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2476.669302][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2476.669305][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2476.669311][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2476.669315][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2476.669319][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2476.669324][ C1] RIP: 0033:0x7f439756d93b [ 2476.669328][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2476.669330][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2476.669334][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2476.669336][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2476.669337][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2476.669339][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2476.669341][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2476.670123][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2476.670128][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2476.670132][ C3] softirqs last disabled at (0): 0x0 | [ 2476.670141][ C3] Tainted: [L]=SOFTLOCKUP [ 2476.670143][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2476.670145][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2476.670149][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2476.670152][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2476.670155][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2476.670157][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2476.670160][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2476.670161][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2476.670163][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2476.670165][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2476.670168][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2476.670172][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2476.670174][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2476.670175][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2476.670177][ C3] PKRU: 55555554 [ 2476.670178][ C3] Call Trace: [ 2476.670180][ C3] [ 2476.670182][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2476.670188][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2476.670193][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2476.670196][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2476.670201][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2476.670206][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2476.670210][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2476.670214][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2476.670217][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2476.670220][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2476.670223][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2476.670226][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2476.670229][ C3] ? xas_alloc (lib/xarray.c:378) [ 2476.670233][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2476.670237][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.670240][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.670243][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2476.670248][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2476.670252][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2476.670258][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670261][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2476.670266][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2476.670271][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670275][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2476.670278][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2476.670281][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2476.670285][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2476.670288][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2476.670294][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2476.670297][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2476.670300][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2476.670305][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2476.670309][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2476.670313][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2476.670315][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2476.670319][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670323][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2476.670327][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2476.670332][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2476.670335][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2476.670341][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2476.670345][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670349][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2476.670354][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2476.670358][ C3] handle_softirqs (kernel/softirq.c:579) [ 2476.670364][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2476.670368][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2476.670371][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2476.670375][ C3] [ 2476.670376][ C3] [ 2476.670378][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2476.670382][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2476.670385][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2476.670388][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2476.670391][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2476.670393][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2476.670395][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2476.670397][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2476.670399][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2476.670403][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2476.670409][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2476.670415][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2476.670418][ C3] ? xas_alloc (lib/xarray.c:378) [ 2476.670423][ C3] ? xas_alloc (lib/xarray.c:378) [ 2476.670426][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2476.670430][ C3] ? xas_alloc (lib/xarray.c:378) [ 2476.670433][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2476.670438][ C3] xas_alloc (lib/xarray.c:378) [ 2476.670443][ C3] xas_create (lib/xarray.c:685) [ 2476.670448][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2476.670453][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.670457][ C3] __xa_store (lib/xarray.c:1703) [ 2476.670461][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2476.670465][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.670468][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2476.670471][ C3] ? xa_store (lib/xarray.c:1734) [ 2476.670476][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2476.670480][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2476.670483][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2476.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2476.670491][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2476.670494][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670498][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2476.670502][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2476.670507][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2476.670511][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2476.670515][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2476.670519][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2476.670524][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2476.670530][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2476.670534][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2476.670538][ C3] ksys_unshare (kernel/fork.c:3121) [ 2476.670542][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2476.670545][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2476.670549][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2476.670551][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2476.670555][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2476.670560][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2476.670564][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2476.670569][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2476.670572][ C3] RIP: 0033:0x7f439756d93b [ 2476.670575][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2476.670578][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2476.670581][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2476.670583][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2476.670585][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2476.670587][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2476.670589][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2480.669139][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2480.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2480.669153][ C2] softirqs last disabled at (0): 0x0 | [ 2480.669167][ C2] Tainted: [L]=SOFTLOCKUP [ 2480.669168][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2480.669171][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2480.669181][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2480.669185][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2480.669189][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2480.669191][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2480.669193][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2480.669195][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2480.669197][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2480.669199][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2480.669202][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2480.669206][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2480.669208][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2480.669210][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2480.669212][ C2] PKRU: 55555554 [ 2480.669213][ C2] Call Trace: [ 2480.669219][ C2] [ 2480.669223][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2480.669227][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2480.669233][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2480.669237][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2480.669245][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2480.669249][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2480.669252][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2480.669254][ C2] ? xa_store (lib/xarray.c:1734) [ 2480.669262][ C2] xa_store (lib/xarray.c:1734) [ 2480.669266][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2480.669272][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2480.669278][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2480.669281][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2480.669284][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2480.669291][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2480.669294][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2480.669303][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2480.669307][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2480.669312][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2480.669319][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2480.669324][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2480.669333][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2480.669337][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2480.669344][ C2] ksys_unshare (kernel/fork.c:3121) [ 2480.669349][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2480.669352][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2480.669357][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2480.669361][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2480.669365][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2480.669373][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2480.669377][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2480.669382][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2480.669387][ C2] RIP: 0033:0x7f439756d93b [ 2480.669393][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2480.669396][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2480.669399][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2480.669401][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2480.669403][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2480.669405][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2480.669407][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2504.656140][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2504.656149][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2504.656153][ C0] softirqs last disabled at (0): 0x0 | [ 2504.656167][ C0] Tainted: [L]=SOFTLOCKUP [ 2504.656168][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2504.656170][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2504.656181][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2504.656185][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2504.656188][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2504.656190][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2504.656193][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2504.656195][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2504.656197][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2504.656199][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2504.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2504.656205][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2504.656207][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2504.656208][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2504.656210][ C0] PKRU: 55555554 [ 2504.656211][ C0] Call Trace: [ 2504.656216][ C0] [ 2504.656220][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2504.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.656230][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.656234][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2504.656242][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2504.656245][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.656248][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.656251][ C0] ? xa_store (lib/xarray.c:1734) [ 2504.656259][ C0] xa_store (lib/xarray.c:1734) [ 2504.656264][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2504.656270][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2504.656275][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.656278][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.656281][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.656288][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.656291][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2504.656300][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2504.656304][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2504.656309][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2504.656317][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2504.656322][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2504.656332][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2504.656336][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2504.656343][ C0] ksys_unshare (kernel/fork.c:3121) [ 2504.656348][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2504.656352][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2504.656357][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2504.656360][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2504.656364][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2504.656372][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2504.656376][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2504.656383][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2504.656388][ C0] RIP: 0033:0x7f439756d93b [ 2504.656392][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2504.656395][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2504.656398][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2504.656400][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2504.656402][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2504.656404][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2504.656407][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2504.669125][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2504.669131][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2504.669135][ C1] softirqs last disabled at (0): 0x0 | [ 2504.669144][ C1] Tainted: [L]=SOFTLOCKUP [ 2504.669145][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2504.669147][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2504.669152][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2504.669155][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2504.669158][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2504.669160][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2504.669162][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2504.669164][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2504.669166][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2504.669168][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2504.669170][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2504.669174][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2504.669176][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2504.669177][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2504.669179][ C1] PKRU: 55555554 [ 2504.669180][ C1] Call Trace: [ 2504.669181][ C1] [ 2504.669184][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2504.669188][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.669192][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.669195][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2504.669201][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2504.669204][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.669207][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.669209][ C1] ? xa_store (lib/xarray.c:1734) [ 2504.669215][ C1] xa_store (lib/xarray.c:1734) [ 2504.669219][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2504.669222][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2504.669227][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.669230][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.669233][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.669237][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.669241][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2504.669246][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2504.669250][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2504.669255][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2504.669259][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2504.669263][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2504.669270][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2504.669274][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2504.669278][ C1] ksys_unshare (kernel/fork.c:3121) [ 2504.669282][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2504.669285][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2504.669289][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2504.669292][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2504.669296][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2504.669301][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2504.669305][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2504.669309][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2504.669312][ C1] RIP: 0033:0x7f439756d93b [ 2504.669316][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2504.669318][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2504.669321][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2504.669323][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2504.669325][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2504.669327][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2504.669329][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2504.670140][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2504.670145][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2504.670149][ C3] softirqs last disabled at (0): 0x0 | [ 2504.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 2504.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2504.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2504.670167][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2504.670170][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2504.670173][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2504.670175][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2504.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2504.670179][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2504.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2504.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2504.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2504.670189][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2504.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2504.670193][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2504.670195][ C3] PKRU: 55555554 [ 2504.670196][ C3] Call Trace: [ 2504.670198][ C3] [ 2504.670200][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2504.670207][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2504.670212][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2504.670215][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2504.670220][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2504.670226][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2504.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2504.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2504.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2504.670240][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2504.670243][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2504.670246][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2504.670249][ C3] ? xas_alloc (lib/xarray.c:378) [ 2504.670253][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2504.670257][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.670260][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.670263][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2504.670269][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2504.670273][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2504.670278][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670282][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2504.670287][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2504.670291][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670295][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2504.670298][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2504.670302][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2504.670305][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2504.670308][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2504.670315][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2504.670318][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2504.670321][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2504.670326][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2504.670330][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2504.670333][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2504.670336][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2504.670340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670344][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2504.670348][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2504.670352][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2504.670355][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2504.670361][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2504.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670369][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2504.670374][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2504.670379][ C3] handle_softirqs (kernel/softirq.c:579) [ 2504.670385][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2504.670389][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2504.670392][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2504.670396][ C3] [ 2504.670397][ C3] [ 2504.670399][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2504.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2504.670407][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2504.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2504.670413][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2504.670415][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2504.670417][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2504.670419][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2504.670421][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2504.670425][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2504.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2504.670437][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2504.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 2504.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 2504.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2504.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2504.670456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2504.670461][ C3] xas_alloc (lib/xarray.c:378) [ 2504.670466][ C3] xas_create (lib/xarray.c:685) [ 2504.670473][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2504.670477][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.670486][ C3] __xa_store (lib/xarray.c:1703) [ 2504.670490][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2504.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2504.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 2504.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2504.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2504.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2504.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2504.670521][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2504.670523][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2504.670531][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2504.670536][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2504.670540][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2504.670544][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2504.670548][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2504.670553][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2504.670560][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2504.670563][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2504.670567][ C3] ksys_unshare (kernel/fork.c:3121) [ 2504.670572][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2504.670575][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2504.670579][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2504.670581][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2504.670585][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2504.670590][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2504.670594][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2504.670598][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2504.670601][ C3] RIP: 0033:0x7f439756d93b [ 2504.670605][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2504.670608][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2504.670611][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2504.670613][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2504.670615][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2504.670617][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2504.670619][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2508.669139][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2508.669149][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2508.669153][ C2] softirqs last disabled at (0): 0x0 | [ 2508.669166][ C2] Tainted: [L]=SOFTLOCKUP [ 2508.669173][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2508.669176][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2508.669185][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2508.669189][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2508.669192][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2508.669195][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2508.669197][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2508.669199][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2508.669201][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2508.669203][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2508.669205][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2508.669209][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2508.669211][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2508.669213][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2508.669214][ C2] PKRU: 55555554 [ 2508.669216][ C2] Call Trace: [ 2508.669221][ C2] [ 2508.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2508.669229][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2508.669235][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2508.669240][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2508.669247][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2508.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2508.669254][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2508.669256][ C2] ? xa_store (lib/xarray.c:1734) [ 2508.669263][ C2] xa_store (lib/xarray.c:1734) [ 2508.669268][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2508.669275][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2508.669280][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2508.669283][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2508.669286][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2508.669293][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2508.669297][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2508.669305][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2508.669309][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2508.669314][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2508.669322][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2508.669327][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2508.669336][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2508.669340][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2508.669346][ C2] ksys_unshare (kernel/fork.c:3121) [ 2508.669352][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2508.669355][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2508.669360][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2508.669364][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2508.669368][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2508.669375][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2508.669381][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2508.669387][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2508.669393][ C2] RIP: 0033:0x7f439756d93b [ 2508.669398][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2508.669401][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2508.669404][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2508.669406][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2508.669408][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2508.669410][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2508.669412][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2530.341121][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2530.341404][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2530.341647][ C1] NMI backtrace for cpu 1 | [ 2530.341662][ C1] Tainted: [L]=SOFTLOCKUP [ 2530.341664][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2530.341667][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2530.341674][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2530.341678][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2530.341681][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2530.341683][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2530.341685][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2530.341687][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2530.341689][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2530.341691][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2530.341694][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2530.341697][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2530.341699][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2530.341701][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2530.341702][ C1] PKRU: 55555554 [ 2530.341703][ C1] Call Trace: [ 2530.341705][ C1] [ 2530.341707][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2530.341711][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2530.341715][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2530.341718][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2530.341725][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2530.341728][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2530.341731][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2530.341734][ C1] ? xa_store (lib/xarray.c:1734) [ 2530.341741][ C1] xa_store (lib/xarray.c:1734) [ 2530.341745][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2530.341750][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2530.341755][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2530.341758][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2530.341761][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.341766][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.341769][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2530.341777][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2530.341781][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2530.341785][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2530.341792][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2530.341796][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2530.341804][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2530.341808][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2530.341814][ C1] ksys_unshare (kernel/fork.c:3121) [ 2530.341820][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2530.341824][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2530.341829][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2530.341832][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2530.341836][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2530.341843][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2530.341847][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2530.341851][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2530.341856][ C1] RIP: 0033:0x7f439756d93b [ 2530.341860][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2530.341862][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2530.341865][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2530.341867][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2530.341869][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2530.341870][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2530.341872][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2530.341870][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2530.341872][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2530.341878][ C1] | [ 2530.342649][ C3] Tainted: [L]=SOFTLOCKUP [ 2530.342650][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2530.342652][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2530.342657][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2530.342660][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2530.342664][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2530.342666][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2530.342668][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2530.342669][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2530.342671][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2530.342674][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2530.342676][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2530.342680][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2530.342681][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2530.342683][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2530.342685][ C3] PKRU: 55555554 [ 2530.342686][ C3] Call Trace: [ 2530.342688][ C3] [ 2530.342689][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2530.342695][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2530.342700][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2530.342703][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2530.342707][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2530.342713][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2530.342716][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2530.342720][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2530.342723][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2530.342727][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2530.342729][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2530.342732][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2530.342735][ C3] ? xas_alloc (lib/xarray.c:378) [ 2530.342740][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2530.342743][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2530.342746][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2530.342749][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2530.342754][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2530.342757][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2530.342763][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342766][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2530.342771][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2530.342776][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342779][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2530.342781][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2530.342784][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2530.342788][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2530.342790][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2530.342797][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2530.342800][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2530.342803][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2530.342807][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2530.342811][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2530.342814][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2530.342817][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2530.342821][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342825][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2530.342829][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2530.342833][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2530.342836][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2530.342842][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2530.342846][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342849][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2530.342853][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2530.342857][ C3] handle_softirqs (kernel/softirq.c:579) [ 2530.342863][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2530.342866][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2530.342869][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2530.342873][ C3] [ 2530.342874][ C3] [ 2530.342875][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2530.342879][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2530.342883][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2530.342885][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2530.342887][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2530.342889][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2530.342891][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2530.342892][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2530.342894][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2530.342898][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2530.342903][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2530.342908][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2530.342911][ C3] ? xas_alloc (lib/xarray.c:378) [ 2530.342915][ C3] ? xas_alloc (lib/xarray.c:378) [ 2530.342918][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2530.342922][ C3] ? xas_alloc (lib/xarray.c:378) [ 2530.342924][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2530.342929][ C3] xas_alloc (lib/xarray.c:378) [ 2530.342933][ C3] xas_create (lib/xarray.c:685) [ 2530.342939][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2530.342943][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2530.342947][ C3] __xa_store (lib/xarray.c:1703) [ 2530.342950][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2530.342955][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2530.342957][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2530.342960][ C3] ? xa_store (lib/xarray.c:1734) [ 2530.342965][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2530.342969][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2530.342971][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2530.342976][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2530.342979][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2530.342981][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342985][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2530.342988][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2530.342993][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2530.342996][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2530.343001][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2530.343004][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2530.343008][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2530.343014][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2530.343018][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2530.343022][ C3] ksys_unshare (kernel/fork.c:3121) [ 2530.343027][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2530.343030][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2530.343033][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2530.343036][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2530.343039][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2530.343044][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2530.343048][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2530.343052][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2530.343055][ C3] RIP: 0033:0x7f439756d93b [ 2530.343059][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2530.343062][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2530.343064][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2530.343066][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2530.343068][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2530.343070][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2530.343071][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2532.656124][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2532.656130][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2532.656133][ C0] softirqs last disabled at (0): 0x0 | [ 2532.656143][ C0] Tainted: [L]=SOFTLOCKUP [ 2532.656144][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2532.656146][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2532.656151][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2532.656154][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2532.656157][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2532.656159][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2532.656161][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2532.656163][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2532.656165][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2532.656167][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2532.656170][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2532.656173][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2532.656175][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2532.656176][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2532.656178][ C0] PKRU: 55555554 [ 2532.656180][ C0] Call Trace: [ 2532.656181][ C0] [ 2532.656183][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2532.656187][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2532.656190][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2532.656194][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2532.656199][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2532.656202][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2532.656205][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2532.656207][ C0] ? xa_store (lib/xarray.c:1734) [ 2532.656213][ C0] xa_store (lib/xarray.c:1734) [ 2532.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2532.656220][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2532.656225][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2532.656228][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2532.656231][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2532.656235][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2532.656238][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2532.656244][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2532.656248][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2532.656252][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2532.656256][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2532.656260][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2532.656267][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2532.656271][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2532.656275][ C0] ksys_unshare (kernel/fork.c:3121) [ 2532.656280][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2532.656283][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2532.656287][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2532.656290][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2532.656293][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2532.656298][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2532.656302][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2532.656306][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2532.656309][ C0] RIP: 0033:0x7f439756d93b [ 2532.656312][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2532.656315][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2532.656318][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2532.656320][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2532.656322][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2532.656323][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2532.656325][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2536.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2536.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2536.669130][ C2] softirqs last disabled at (0): 0x0 | [ 2536.669139][ C2] Tainted: [L]=SOFTLOCKUP [ 2536.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2536.669142][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2536.669146][ C2] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 2536.669150][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000246 [ 2536.669153][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2536.669155][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2536.669157][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2536.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2536.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2536.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2536.669166][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2536.669169][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2536.669171][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2536.669173][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2536.669175][ C2] PKRU: 55555554 [ 2536.669176][ C2] Call Trace: [ 2536.669178][ C2] [ 2536.669180][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2536.669185][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2536.669188][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2536.669192][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2536.669195][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2536.669200][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2536.669203][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2536.669206][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2536.669208][ C2] ? xa_store (lib/xarray.c:1734) [ 2536.669214][ C2] xa_store (lib/xarray.c:1734) [ 2536.669218][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2536.669221][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2536.669226][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2536.669229][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2536.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2536.669236][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2536.669240][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2536.669245][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2536.669249][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2536.669254][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2536.669258][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2536.669262][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2536.669269][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2536.669272][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2536.669277][ C2] ksys_unshare (kernel/fork.c:3121) [ 2536.669281][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2536.669285][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2536.669288][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2536.669291][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2536.669295][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2536.669300][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2536.669304][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2536.669308][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2536.669311][ C2] RIP: 0033:0x7f439756d93b [ 2536.669315][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2536.669318][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2536.669321][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2536.669323][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2536.669325][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2536.669327][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2536.669329][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2556.669123][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2556.669129][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2556.669132][ C1] softirqs last disabled at (0): 0x0 | [ 2556.669142][ C1] Tainted: [L]=SOFTLOCKUP [ 2556.669143][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2556.669145][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2556.669150][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2556.669153][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2556.669156][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2556.669158][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2556.669160][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2556.669162][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2556.669165][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2556.669167][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2556.669169][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2556.669172][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2556.669174][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2556.669176][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2556.669177][ C1] PKRU: 55555554 [ 2556.669179][ C1] Call Trace: [ 2556.669182][ C1] [ 2556.669184][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2556.669188][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2556.669191][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2556.669194][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2556.669200][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2556.669203][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2556.669205][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2556.669208][ C1] ? xa_store (lib/xarray.c:1734) [ 2556.669213][ C1] xa_store (lib/xarray.c:1734) [ 2556.669218][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2556.669221][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2556.669226][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2556.669229][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2556.669232][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.669236][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.669240][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2556.669245][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2556.669249][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2556.669254][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2556.669258][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2556.669263][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2556.669269][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2556.669273][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2556.669277][ C1] ksys_unshare (kernel/fork.c:3121) [ 2556.669282][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2556.669285][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2556.669290][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2556.669292][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2556.669296][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2556.669301][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2556.669305][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2556.669309][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2556.669312][ C1] RIP: 0033:0x7f439756d93b [ 2556.669316][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2556.669319][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2556.669322][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2556.669324][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2556.669326][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2556.669328][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2556.669330][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2556.670123][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2556.670129][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2556.670132][ C3] softirqs last disabled at (0): 0x0 | [ 2556.670142][ C3] Tainted: [L]=SOFTLOCKUP [ 2556.670143][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2556.670145][ C3] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2556.670149][ C3] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 2556.670152][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000212 [ 2556.670155][ C3] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2556.670158][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2556.670160][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2556.670161][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2556.670163][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2556.670165][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2556.670168][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2556.670171][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2556.670174][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2556.670175][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2556.670177][ C3] PKRU: 55555554 [ 2556.670178][ C3] Call Trace: [ 2556.670181][ C3] [ 2556.670184][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2556.670188][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2556.670193][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2556.670198][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2556.670201][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2556.670206][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2556.670212][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2556.670215][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2556.670219][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2556.670222][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2556.670226][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2556.670228][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2556.670231][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2556.670233][ C3] ? xas_alloc (lib/xarray.c:378) [ 2556.670238][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2556.670241][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2556.670244][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2556.670247][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2556.670252][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2556.670257][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2556.670262][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670266][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2556.670271][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2556.670276][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670279][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2556.670282][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2556.670285][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2556.670288][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2556.670291][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2556.670298][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2556.670302][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2556.670305][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2556.670309][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2556.670313][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2556.670316][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2556.670319][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2556.670323][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670326][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2556.670330][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2556.670335][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2556.670338][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2556.670344][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2556.670348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670351][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2556.670356][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2556.670360][ C3] handle_softirqs (kernel/softirq.c:579) [ 2556.670366][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2556.670370][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2556.670373][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2556.670377][ C3] [ 2556.670378][ C3] [ 2556.670380][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2556.670384][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2556.670387][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2556.670390][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2556.670393][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2556.670395][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2556.670397][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2556.670399][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2556.670401][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2556.670405][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2556.670411][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2556.670416][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2556.670420][ C3] ? xas_alloc (lib/xarray.c:378) [ 2556.670425][ C3] ? xas_alloc (lib/xarray.c:378) [ 2556.670427][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2556.670431][ C3] ? xas_alloc (lib/xarray.c:378) [ 2556.670434][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2556.670439][ C3] xas_alloc (lib/xarray.c:378) [ 2556.670443][ C3] xas_create (lib/xarray.c:685) [ 2556.670449][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2556.670454][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2556.670458][ C3] __xa_store (lib/xarray.c:1703) [ 2556.670461][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2556.670466][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2556.670469][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2556.670472][ C3] ? xa_store (lib/xarray.c:1734) [ 2556.670476][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2556.670480][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2556.670483][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2556.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2556.670490][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2556.670493][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670497][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2556.670500][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2556.670505][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2556.670509][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2556.670513][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2556.670517][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2556.670521][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2556.670528][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2556.670532][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2556.670536][ C3] ksys_unshare (kernel/fork.c:3121) [ 2556.670540][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2556.670543][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2556.670547][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2556.670549][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2556.670553][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2556.670558][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2556.670562][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2556.670566][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2556.670569][ C3] RIP: 0033:0x7f439756d93b [ 2556.670573][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2556.670575][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2556.670578][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2556.670580][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2556.670582][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2556.670584][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2556.670586][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2560.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2560.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2560.656128][ C0] softirqs last disabled at (0): 0x0 | [ 2560.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 2560.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2560.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2560.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2560.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2560.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2560.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2560.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2560.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2560.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2560.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2560.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2560.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2560.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2560.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2560.656172][ C0] PKRU: 55555554 [ 2560.656173][ C0] Call Trace: [ 2560.656175][ C0] [ 2560.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2560.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2560.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2560.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2560.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2560.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2560.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2560.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 2560.656209][ C0] xa_store (lib/xarray.c:1734) [ 2560.656213][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2560.656216][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2560.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2560.656224][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2560.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2560.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2560.656235][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2560.656241][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2560.656244][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2560.656249][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2560.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2560.656258][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2560.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2560.656268][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2560.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 2560.656277][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2560.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2560.656284][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2560.656287][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2560.656291][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2560.656296][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2560.656300][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2560.656304][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2560.656307][ C0] RIP: 0033:0x7f439756d93b [ 2560.656310][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2560.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2560.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2560.656319][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2560.656321][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2560.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2560.656325][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2564.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2564.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2564.669128][ C2] softirqs last disabled at (0): 0x0 | [ 2564.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 2564.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2564.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:87 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2564.669145][ C2] Code: 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 48 83 c0 01 48 39 d0 74 a5 <80> 38 00 74 f2 e9 74 ff ff ff b8 01 00 00 00 e9 cb 80 38 02 48 29 All code ======== 0: 2c 48 sub $0x48,%al 2: 89 c2 mov %eax,%edx 4: 48 85 c0 test %rax,%rax 7: 75 b0 jne 0xffffffffffffffb9 9: 48 89 da mov %rbx,%rdx c: 4c 89 d8 mov %r11,%rax f: 4c 29 da sub %r11,%rdx 12: e9 49 ff ff ff jmp 0xffffffffffffff60 17: 48 85 d2 test %rdx,%rdx 1a: 74 b3 je 0xffffffffffffffcf 1c: 48 01 ea add %rbp,%rdx 1f: eb 09 jmp 0x2a 21: 48 83 c0 01 add $0x1,%rax 25: 48 39 d0 cmp %rdx,%rax 28: 74 a5 je 0xffffffffffffffcf 2a:* 80 38 00 cmpb $0x0,(%rax) <-- trapping instruction 2d: 74 f2 je 0x21 2f: e9 74 ff ff ff jmp 0xffffffffffffffa8 34: b8 01 00 00 00 mov $0x1,%eax 39: e9 cb 80 38 02 jmp 0x2388109 3e: 48 rex.W 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 80 38 00 cmpb $0x0,(%rax) 3: 74 f2 je 0xfffffffffffffff7 5: e9 74 ff ff ff jmp 0xffffffffffffff7e a: b8 01 00 00 00 mov $0x1,%eax f: e9 cb 80 38 02 jmp 0x23880df 14: 48 rex.W 15: 29 .byte 0x29 [ 2564.669148][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000286 [ 2564.669151][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2564.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2564.669155][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2564.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2564.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2564.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2564.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2564.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2564.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2564.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2564.669173][ C2] PKRU: 55555554 [ 2564.669174][ C2] Call Trace: [ 2564.669176][ C2] [ 2564.669179][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2564.669184][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2564.669187][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2564.669191][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2564.669194][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2564.669199][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2564.669202][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2564.669205][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2564.669208][ C2] ? xa_store (lib/xarray.c:1734) [ 2564.669213][ C2] xa_store (lib/xarray.c:1734) [ 2564.669217][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2564.669221][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2564.669226][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2564.669229][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2564.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2564.669236][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2564.669240][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2564.669245][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2564.669249][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2564.669254][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2564.669258][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2564.669262][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2564.669268][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2564.669272][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2564.669276][ C2] ksys_unshare (kernel/fork.c:3121) [ 2564.669281][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2564.669284][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2564.669288][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2564.669291][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2564.669294][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2564.669299][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2564.669303][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2564.669307][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2564.669310][ C2] RIP: 0033:0x7f439756d93b [ 2564.669313][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2564.669316][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2564.669319][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2564.669321][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2564.669323][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2564.669325][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2564.669327][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2584.669138][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2584.669148][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2584.669152][ C1] softirqs last disabled at (0): 0x0 | [ 2584.669166][ C1] Tainted: [L]=SOFTLOCKUP [ 2584.669168][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2584.669171][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2584.669180][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2584.669183][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2584.669186][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2584.669188][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2584.669191][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2584.669193][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2584.669195][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2584.669197][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2584.669199][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2584.669203][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2584.669205][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2584.669207][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2584.669208][ C1] PKRU: 55555554 [ 2584.669210][ C1] Call Trace: [ 2584.669215][ C1] [ 2584.669219][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2584.669223][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2584.669228][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2584.669233][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2584.669240][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2584.669243][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2584.669246][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2584.669249][ C1] ? xa_store (lib/xarray.c:1734) [ 2584.669256][ C1] xa_store (lib/xarray.c:1734) [ 2584.669261][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2584.669266][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2584.669271][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2584.669274][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2584.669277][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.669283][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.669287][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2584.669295][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2584.669299][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2584.669304][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2584.669312][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2584.669317][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2584.669326][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2584.669330][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2584.669335][ C1] ksys_unshare (kernel/fork.c:3121) [ 2584.669341][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2584.669344][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2584.669350][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2584.669353][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2584.669356][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2584.669363][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2584.669367][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2584.669373][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2584.669378][ C1] RIP: 0033:0x7f439756d93b [ 2584.669383][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2584.669385][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2584.669388][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2584.669391][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2584.669393][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2584.669394][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2584.669396][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2584.670125][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2584.670130][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2584.670134][ C3] softirqs last disabled at (0): 0x0 | [ 2584.670144][ C3] Tainted: [L]=SOFTLOCKUP [ 2584.670145][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2584.670147][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2584.670153][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2584.670156][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2584.670158][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2584.670161][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2584.670163][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2584.670165][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2584.670167][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2584.670168][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2584.670171][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2584.670174][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2584.670176][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2584.670178][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2584.670179][ C3] PKRU: 55555554 [ 2584.670180][ C3] Call Trace: [ 2584.670183][ C3] [ 2584.670185][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2584.670191][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2584.670196][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2584.670199][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2584.670205][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2584.670211][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2584.670214][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2584.670217][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2584.670221][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2584.670224][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2584.670227][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2584.670230][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2584.670232][ C3] ? xas_alloc (lib/xarray.c:378) [ 2584.670237][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2584.670241][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2584.670244][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2584.670247][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2584.670253][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2584.670258][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2584.670263][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670267][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2584.670272][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2584.670277][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670280][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2584.670283][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2584.670287][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2584.670290][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2584.670293][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2584.670300][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2584.670303][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2584.670306][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2584.670310][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2584.670314][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2584.670318][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2584.670321][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2584.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670329][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2584.670333][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2584.670337][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2584.670340][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2584.670346][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2584.670349][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670353][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2584.670357][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2584.670361][ C3] handle_softirqs (kernel/softirq.c:579) [ 2584.670367][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2584.670371][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2584.670374][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2584.670378][ C3] [ 2584.670379][ C3] [ 2584.670380][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2584.670385][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2584.670388][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2584.670391][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2584.670394][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2584.670396][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2584.670398][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2584.670400][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2584.670402][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2584.670406][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2584.670412][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2584.670418][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2584.670421][ C3] ? xas_alloc (lib/xarray.c:378) [ 2584.670426][ C3] ? xas_alloc (lib/xarray.c:378) [ 2584.670429][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2584.670433][ C3] ? xas_alloc (lib/xarray.c:378) [ 2584.670436][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2584.670440][ C3] xas_alloc (lib/xarray.c:378) [ 2584.670445][ C3] xas_create (lib/xarray.c:685) [ 2584.670451][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2584.670456][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2584.670459][ C3] __xa_store (lib/xarray.c:1703) [ 2584.670463][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2584.670468][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2584.670471][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2584.670474][ C3] ? xa_store (lib/xarray.c:1734) [ 2584.670479][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2584.670483][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2584.670486][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2584.670491][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2584.670493][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2584.670496][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670500][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2584.670504][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2584.670508][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2584.670512][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2584.670517][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2584.670520][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2584.670525][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2584.670532][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2584.670535][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2584.670540][ C3] ksys_unshare (kernel/fork.c:3121) [ 2584.670544][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2584.670547][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2584.670551][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2584.670554][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2584.670557][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2584.670562][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2584.670566][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2584.670571][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2584.670574][ C3] RIP: 0033:0x7f439756d93b [ 2584.670577][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2584.670580][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2584.670583][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2584.670585][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2584.670587][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2584.670589][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2584.670591][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2588.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2588.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2588.656129][ C0] softirqs last disabled at (0): 0x0 | [ 2588.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 2588.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2588.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2588.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2588.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2588.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2588.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2588.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2588.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2588.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2588.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2588.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2588.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2588.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2588.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2588.656172][ C0] PKRU: 55555554 [ 2588.656173][ C0] Call Trace: [ 2588.656175][ C0] [ 2588.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2588.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2588.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2588.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2588.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2588.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2588.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2588.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 2588.656207][ C0] xa_store (lib/xarray.c:1734) [ 2588.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2588.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2588.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2588.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2588.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2588.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2588.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2588.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2588.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2588.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2588.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2588.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2588.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2588.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2588.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 2588.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2588.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2588.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2588.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2588.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2588.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2588.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2588.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2588.656304][ C0] RIP: 0033:0x7f439756d93b [ 2588.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2588.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2588.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2588.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2588.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2588.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2588.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2592.669142][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2592.669152][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2592.669155][ C2] softirqs last disabled at (0): 0x0 | [ 2592.669170][ C2] Tainted: [L]=SOFTLOCKUP [ 2592.669172][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2592.669174][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2592.669184][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2592.669188][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2592.669191][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2592.669193][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2592.669196][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2592.669197][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2592.669200][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2592.669202][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2592.669205][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2592.669209][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2592.669211][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2592.669212][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2592.669214][ C2] PKRU: 55555554 [ 2592.669215][ C2] Call Trace: [ 2592.669221][ C2] [ 2592.669225][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2592.669230][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2592.669236][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2592.669240][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2592.669247][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2592.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2592.669254][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2592.669257][ C2] ? xa_store (lib/xarray.c:1734) [ 2592.669265][ C2] xa_store (lib/xarray.c:1734) [ 2592.669270][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2592.669276][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2592.669282][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2592.669285][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2592.669288][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2592.669294][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2592.669298][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2592.669306][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2592.669310][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2592.669315][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2592.669323][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2592.669328][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2592.669337][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2592.669342][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2592.669348][ C2] ksys_unshare (kernel/fork.c:3121) [ 2592.669354][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2592.669357][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2592.669362][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2592.669366][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2592.669370][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2592.669377][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2592.669381][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2592.669388][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2592.669393][ C2] RIP: 0033:0x7f439756d93b [ 2592.669398][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2592.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2592.669404][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2592.669406][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2592.669408][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2592.669410][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2592.669412][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2608.354825][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2608.355136][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2608.355550][ C1] NMI backtrace for cpu 1 | [ 2608.355567][ C1] Tainted: [L]=SOFTLOCKUP [ 2608.355568][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2608.355571][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2608.355579][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2608.355583][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2608.355586][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2608.355589][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2608.355591][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2608.355593][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2608.355595][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2608.355597][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2608.355600][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2608.355603][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2608.355605][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2608.355607][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2608.355608][ C1] PKRU: 55555554 [ 2608.355610][ C1] Call Trace: [ 2608.355611][ C1] [ 2608.355613][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2608.355617][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2608.355622][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2608.355625][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2608.355633][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2608.355636][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2608.355639][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2608.355642][ C1] ? xa_store (lib/xarray.c:1734) [ 2608.355650][ C1] xa_store (lib/xarray.c:1734) [ 2608.355653][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2608.355659][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2608.355664][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2608.355667][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2608.355670][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.355675][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.355678][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2608.355686][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2608.355690][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2608.355695][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2608.355701][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2608.355706][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2608.355713][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2608.355717][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2608.355724][ C1] ksys_unshare (kernel/fork.c:3121) [ 2608.355731][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2608.355734][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2608.355739][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2608.355742][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2608.355746][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2608.355753][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2608.355757][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2608.355762][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2608.355766][ C1] RIP: 0033:0x7f439756d93b [ 2608.355770][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2608.355773][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2608.355776][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2608.355778][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2608.355780][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2608.355781][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2608.355784][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2608.355781][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2608.355784][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2608.355789][ C1] | [ 2608.356552][ C3] Tainted: [L]=SOFTLOCKUP [ 2608.356554][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2608.356555][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2608.356560][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2608.356563][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2608.356566][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2608.356568][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2608.356570][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2608.356572][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2608.356574][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2608.356576][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2608.356579][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2608.356582][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2608.356584][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2608.356586][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2608.356588][ C3] PKRU: 55555554 [ 2608.356589][ C3] Call Trace: [ 2608.356590][ C3] [ 2608.356592][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2608.356598][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2608.356603][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2608.356606][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2608.356609][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2608.356615][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2608.356618][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2608.356622][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2608.356624][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2608.356628][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2608.356630][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2608.356633][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2608.356636][ C3] ? xas_alloc (lib/xarray.c:378) [ 2608.356640][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2608.356643][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2608.356646][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2608.356649][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2608.356654][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2608.356658][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2608.356663][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356667][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2608.356672][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2608.356676][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356679][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2608.356682][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2608.356686][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2608.356689][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2608.356692][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2608.356698][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2608.356701][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2608.356704][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2608.356709][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2608.356712][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2608.356716][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2608.356718][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2608.356723][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356726][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2608.356730][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2608.356735][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2608.356738][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2608.356743][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2608.356747][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356750][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2608.356755][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2608.356759][ C3] handle_softirqs (kernel/softirq.c:579) [ 2608.356764][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2608.356767][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2608.356770][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2608.356773][ C3] [ 2608.356775][ C3] [ 2608.356776][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2608.356779][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2608.356783][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2608.356785][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2608.356787][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2608.356789][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2608.356790][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2608.356792][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2608.356794][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2608.356798][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2608.356803][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2608.356808][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2608.356811][ C3] ? xas_alloc (lib/xarray.c:378) [ 2608.356816][ C3] ? xas_alloc (lib/xarray.c:378) [ 2608.356818][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2608.356822][ C3] ? xas_alloc (lib/xarray.c:378) [ 2608.356825][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2608.356829][ C3] xas_alloc (lib/xarray.c:378) [ 2608.356833][ C3] xas_create (lib/xarray.c:685) [ 2608.356839][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2608.356843][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2608.356847][ C3] __xa_store (lib/xarray.c:1703) [ 2608.356850][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2608.356855][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2608.356857][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2608.356860][ C3] ? xa_store (lib/xarray.c:1734) [ 2608.356865][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2608.356869][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2608.356872][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2608.356876][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2608.356879][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2608.356881][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356885][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2608.356889][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2608.356893][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2608.356897][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2608.356901][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2608.356905][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2608.356909][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2608.356914][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2608.356918][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2608.356922][ C3] ksys_unshare (kernel/fork.c:3121) [ 2608.356927][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2608.356930][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2608.356933][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2608.356936][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2608.356939][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2608.356944][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2608.356948][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2608.356952][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2608.356955][ C3] RIP: 0033:0x7f439756d93b [ 2608.356959][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2608.356961][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2608.356964][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2608.356965][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2608.356967][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2608.356968][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2608.356970][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2616.656151][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2616.656161][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2616.656165][ C0] softirqs last disabled at (0): 0x0 | [ 2616.656179][ C0] Tainted: [L]=SOFTLOCKUP [ 2616.656180][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2616.656183][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 2616.656191][ C0] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 2616.656194][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000246 [ 2616.656197][ C0] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2616.656200][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2616.656202][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2616.656204][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2616.656206][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2616.656209][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2616.656211][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2616.656215][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2616.656217][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2616.656219][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2616.656221][ C0] PKRU: 55555554 [ 2616.656222][ C0] Call Trace: [ 2616.656227][ C0] [ 2616.656232][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2616.656242][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2616.656246][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2616.656251][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2616.656256][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2616.656263][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2616.656267][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2616.656270][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2616.656273][ C0] ? xa_store (lib/xarray.c:1734) [ 2616.656280][ C0] xa_store (lib/xarray.c:1734) [ 2616.656285][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2616.656291][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2616.656296][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2616.656299][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2616.656302][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2616.656309][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2616.656312][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2616.656320][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2616.656324][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2616.656329][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2616.656337][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2616.656342][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2616.656351][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2616.656355][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2616.656362][ C0] ksys_unshare (kernel/fork.c:3121) [ 2616.656367][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2616.656370][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2616.656375][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2616.656379][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2616.656382][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2616.656390][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2616.656394][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2616.656400][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2616.656405][ C0] RIP: 0033:0x7f439756d93b [ 2616.656410][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2616.656413][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2616.656417][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2616.656419][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2616.656421][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2616.656423][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2616.656425][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2620.669129][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2620.669136][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2620.669139][ C2] softirqs last disabled at (0): 0x0 | [ 2620.669150][ C2] Tainted: [L]=SOFTLOCKUP [ 2620.669151][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2620.669153][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2620.669160][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2620.669164][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2620.669166][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2620.669169][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2620.669171][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2620.669173][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2620.669175][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2620.669177][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2620.669179][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2620.669183][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2620.669185][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2620.669186][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2620.669188][ C2] PKRU: 55555554 [ 2620.669189][ C2] Call Trace: [ 2620.669193][ C2] [ 2620.669197][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2620.669200][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2620.669204][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2620.669208][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2620.669214][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2620.669217][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2620.669220][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2620.669223][ C2] ? xa_store (lib/xarray.c:1734) [ 2620.669229][ C2] xa_store (lib/xarray.c:1734) [ 2620.669233][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2620.669238][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2620.669243][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2620.669246][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2620.669249][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2620.669254][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2620.669258][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2620.669264][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2620.669268][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2620.669273][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2620.669280][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2620.669284][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2620.669292][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2620.669296][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2620.669301][ C2] ksys_unshare (kernel/fork.c:3121) [ 2620.669306][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2620.669310][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2620.669314][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2620.669317][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2620.669321][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2620.669328][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2620.669332][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2620.669337][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2620.669342][ C2] RIP: 0033:0x7f439756d93b [ 2620.669346][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2620.669349][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2620.669352][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2620.669354][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2620.669356][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2620.669358][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2620.669359][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2632.669124][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2632.669129][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2632.669133][ C1] softirqs last disabled at (0): 0x0 | [ 2632.669142][ C1] Tainted: [L]=SOFTLOCKUP [ 2632.669144][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2632.669146][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2632.669151][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2632.669155][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2632.669157][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2632.669159][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2632.669161][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2632.669163][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2632.669166][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2632.669168][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2632.669170][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2632.669174][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2632.669176][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2632.669177][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2632.669179][ C1] PKRU: 55555554 [ 2632.669180][ C1] Call Trace: [ 2632.669182][ C1] [ 2632.669185][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2632.669189][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2632.669193][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2632.669196][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2632.669202][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2632.669205][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2632.669208][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2632.669211][ C1] ? xa_store (lib/xarray.c:1734) [ 2632.669216][ C1] xa_store (lib/xarray.c:1734) [ 2632.669220][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2632.669224][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2632.669229][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2632.669232][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2632.669234][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.669239][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.669243][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2632.669249][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2632.669252][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2632.669257][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2632.669261][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2632.669265][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2632.669272][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2632.669276][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2632.669280][ C1] ksys_unshare (kernel/fork.c:3121) [ 2632.669284][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2632.669288][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2632.669291][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2632.669294][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2632.669298][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2632.669304][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2632.669307][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2632.669312][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2632.669315][ C1] RIP: 0033:0x7f439756d93b [ 2632.669319][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2632.669322][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2632.669325][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2632.669327][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2632.669329][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2632.669331][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2632.669333][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2632.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2632.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2632.670164][ C3] softirqs last disabled at (0): 0x0 | [ 2632.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 2632.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2632.670180][ C3] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2632.670186][ C3] Code: ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 <49> 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e All code ======== 0: ff (bad) 1: ff (bad) 2: 7f ff jg 0x3 4: ff 48 39 decl 0x39(%rax) 7: c7 (bad) 8: 76 dd jbe 0xffffffffffffffe7 a: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 f: 48 89 fd mov %rdi,%rbp 12: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 19: fc ff df 1c: 4d 89 d1 mov %r10,%r9 1f: 48 c1 ed 03 shr $0x3,%rbp 23: 49 c1 e9 03 shr $0x3,%r9 27: 48 01 c5 add %rax,%rbp 2a:* 49 01 c1 add %rax,%r9 <-- trapping instruction 2d: 48 89 e8 mov %rbp,%rax 30: 49 8d 59 01 lea 0x1(%r9),%rbx 34: 48 89 da mov %rbx,%rdx 37: 48 29 ea sub %rbp,%rdx 3a: 48 83 fa 10 cmp $0x10,%rdx 3e: 0f .byte 0xf 3f: 8e .byte 0x8e Code starting with the faulting instruction =========================================== 0: 49 01 c1 add %rax,%r9 3: 48 89 e8 mov %rbp,%rax 6: 49 8d 59 01 lea 0x1(%r9),%rbx a: 48 89 da mov %rbx,%rdx d: 48 29 ea sub %rbp,%rdx 10: 48 83 fa 10 cmp $0x10,%rdx 14: 0f .byte 0xf 15: 8e .byte 0x8e [ 2632.670189][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000282 [ 2632.670192][ C3] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2632.670194][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2632.670196][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: 1ffffffff77dcb80 [ 2632.670198][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2632.670200][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2632.670202][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2632.670204][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2632.670209][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2632.670211][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2632.670212][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2632.670214][ C3] PKRU: 55555554 [ 2632.670215][ C3] Call Trace: [ 2632.670219][ C3] [ 2632.670223][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2632.670230][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2632.670235][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2632.670241][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2632.670244][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2632.670250][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2632.670256][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2632.670260][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2632.670264][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2632.670268][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2632.670272][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2632.670274][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2632.670277][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2632.670280][ C3] ? xas_alloc (lib/xarray.c:378) [ 2632.670286][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2632.670290][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2632.670293][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2632.670297][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2632.670302][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2632.670306][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2632.670312][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670316][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2632.670322][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2632.670327][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670330][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2632.670333][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2632.670337][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2632.670340][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2632.670343][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2632.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2632.670354][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2632.670357][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2632.670361][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2632.670366][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2632.670369][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2632.670372][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2632.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670380][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2632.670385][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2632.670389][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2632.670392][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2632.670398][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2632.670402][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670405][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2632.670410][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2632.670415][ C3] handle_softirqs (kernel/softirq.c:579) [ 2632.670421][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2632.670425][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2632.670428][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2632.670432][ C3] [ 2632.670433][ C3] [ 2632.670435][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2632.670441][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2632.670444][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2632.670447][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2632.670450][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2632.670453][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2632.670454][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2632.670456][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2632.670459][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2632.670463][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2632.670469][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2632.670475][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2632.670478][ C3] ? xas_alloc (lib/xarray.c:378) [ 2632.670483][ C3] ? xas_alloc (lib/xarray.c:378) [ 2632.670486][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2632.670490][ C3] ? xas_alloc (lib/xarray.c:378) [ 2632.670493][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2632.670498][ C3] xas_alloc (lib/xarray.c:378) [ 2632.670503][ C3] xas_create (lib/xarray.c:685) [ 2632.670509][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2632.670514][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2632.670517][ C3] __xa_store (lib/xarray.c:1703) [ 2632.670521][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2632.670526][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2632.670529][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2632.670532][ C3] ? xa_store (lib/xarray.c:1734) [ 2632.670537][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2632.670541][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2632.670544][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2632.670549][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2632.670552][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2632.670555][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670559][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2632.670562][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2632.670567][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2632.670571][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2632.670576][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2632.670580][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2632.670584][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2632.670592][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2632.670596][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2632.670601][ C3] ksys_unshare (kernel/fork.c:3121) [ 2632.670605][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2632.670609][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2632.670612][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2632.670615][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2632.670619][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2632.670625][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2632.670629][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2632.670634][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2632.670637][ C3] RIP: 0033:0x7f439756d93b [ 2632.670642][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2632.670645][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2632.670648][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2632.670650][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2632.670652][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2632.670654][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2632.670656][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2644.656122][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2644.656128][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2644.656132][ C0] softirqs last disabled at (0): 0x0 | [ 2644.656141][ C0] Tainted: [L]=SOFTLOCKUP [ 2644.656143][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2644.656145][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2644.656150][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2644.656153][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2644.656156][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2644.656158][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2644.656160][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2644.656162][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2644.656164][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2644.656167][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2644.656169][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2644.656172][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2644.656174][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2644.656176][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2644.656177][ C0] PKRU: 55555554 [ 2644.656179][ C0] Call Trace: [ 2644.656180][ C0] [ 2644.656183][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2644.656187][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2644.656190][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2644.656194][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2644.656199][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2644.656202][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2644.656204][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2644.656207][ C0] ? xa_store (lib/xarray.c:1734) [ 2644.656213][ C0] xa_store (lib/xarray.c:1734) [ 2644.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2644.656221][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2644.656226][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2644.656229][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2644.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2644.656236][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2644.656240][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2644.656245][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2644.656249][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2644.656254][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2644.656258][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2644.656262][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2644.656269][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2644.656273][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2644.656277][ C0] ksys_unshare (kernel/fork.c:3121) [ 2644.656282][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2644.656285][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2644.656289][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2644.656292][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2644.656295][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2644.656301][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2644.656305][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2644.656309][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2644.656313][ C0] RIP: 0033:0x7f439756d93b [ 2644.656316][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2644.656319][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2644.656322][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2644.656324][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2644.656326][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2644.656328][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2644.656330][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2648.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2648.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2648.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2648.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2648.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2648.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2648.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2648.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2648.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2648.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2648.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2648.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2648.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2648.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2648.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2648.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2648.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2648.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2648.669172][ C2] PKRU: 55555554 [ 2648.669174][ C2] Call Trace: [ 2648.669175][ C2] [ 2648.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2648.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2648.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2648.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2648.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2648.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2648.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2648.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 2648.669208][ C2] xa_store (lib/xarray.c:1734) [ 2648.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2648.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2648.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2648.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2648.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2648.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2648.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2648.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2648.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2648.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2648.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2648.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2648.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2648.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2648.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 2648.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2648.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2648.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2648.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2648.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2648.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2648.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2648.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2648.669304][ C2] RIP: 0033:0x7f439756d93b [ 2648.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2648.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2648.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2648.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2648.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2648.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2648.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2660.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2660.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2660.669129][ C1] softirqs last disabled at (0): 0x0 | [ 2660.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 2660.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2660.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2660.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2660.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2660.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2660.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2660.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2660.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2660.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2660.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2660.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2660.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2660.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2660.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2660.669173][ C1] PKRU: 55555554 [ 2660.669174][ C1] Call Trace: [ 2660.669176][ C1] [ 2660.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2660.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2660.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2660.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2660.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2660.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2660.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2660.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 2660.669207][ C1] xa_store (lib/xarray.c:1734) [ 2660.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2660.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2660.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2660.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2660.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2660.669239][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2660.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2660.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2660.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2660.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2660.669262][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2660.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2660.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 2660.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2660.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2660.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2660.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2660.669288][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2660.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2660.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2660.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2660.669303][ C1] RIP: 0033:0x7f439756d93b [ 2660.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2660.669309][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2660.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2660.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2660.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2660.669319][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2660.669321][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2660.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2660.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2660.670164][ C3] softirqs last disabled at (0): 0x0 | [ 2660.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 2660.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2660.670180][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:103 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2660.670186][ C3] Code: 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d 59 01 48 89 da <48> 29 ea 48 83 fa 10 0f 8e c0 00 00 00 41 89 eb 41 83 e3 07 75 7d All code ======== 0: 37 (bad) 1: ff 48 89 decl -0x77(%rax) 4: fd std 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 4d 89 d1 mov %r10,%r9 12: 48 c1 ed 03 shr $0x3,%rbp 16: 49 c1 e9 03 shr $0x3,%r9 1a: 48 01 c5 add %rax,%rbp 1d: 49 01 c1 add %rax,%r9 20: 48 89 e8 mov %rbp,%rax 23: 49 8d 59 01 lea 0x1(%r9),%rbx 27: 48 89 da mov %rbx,%rdx 2a:* 48 29 ea sub %rbp,%rdx <-- trapping instruction 2d: 48 83 fa 10 cmp $0x10,%rdx 31: 0f 8e c0 00 00 00 jle 0xf7 37: 41 89 eb mov %ebp,%r11d 3a: 41 83 e3 07 and $0x7,%r11d 3e: 75 7d jne 0xbd Code starting with the faulting instruction =========================================== 0: 48 29 ea sub %rbp,%rdx 3: 48 83 fa 10 cmp $0x10,%rdx 7: 0f 8e c0 00 00 00 jle 0xcd d: 41 89 eb mov %ebp,%r11d 10: 41 83 e3 07 and $0x7,%r11d 14: 75 7d jne 0x93 [ 2660.670189][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000282 [ 2660.670192][ C3] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2660.670194][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2660.670196][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2660.670198][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2660.670201][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2660.670203][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2660.670205][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2660.670209][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2660.670211][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2660.670213][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2660.670215][ C3] PKRU: 55555554 [ 2660.670216][ C3] Call Trace: [ 2660.670219][ C3] [ 2660.670222][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2660.670230][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2660.670235][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2660.670239][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2660.670242][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2660.670248][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2660.670252][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2660.670255][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2660.670260][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2660.670263][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2660.670267][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2660.670269][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2660.670273][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2660.670275][ C3] ? xas_alloc (lib/xarray.c:378) [ 2660.670281][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2660.670285][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2660.670288][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2660.670292][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2660.670297][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2660.670302][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2660.670307][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670312][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2660.670319][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2660.670325][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670328][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2660.670332][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2660.670335][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2660.670338][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2660.670341][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2660.670347][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2660.670350][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2660.670353][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2660.670358][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2660.670362][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2660.670366][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2660.670368][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2660.670372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670375][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2660.670380][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2660.670384][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2660.670387][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2660.670392][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2660.670397][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670400][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2660.670405][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2660.670409][ C3] handle_softirqs (kernel/softirq.c:579) [ 2660.670416][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2660.670419][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2660.670423][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2660.670427][ C3] [ 2660.670429][ C3] [ 2660.670430][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2660.670436][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2660.670439][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2660.670442][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2660.670445][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2660.670447][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2660.670449][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2660.670451][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2660.670453][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2660.670457][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2660.670463][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2660.670469][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2660.670473][ C3] ? xas_alloc (lib/xarray.c:378) [ 2660.670477][ C3] ? xas_alloc (lib/xarray.c:378) [ 2660.670480][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2660.670485][ C3] ? xas_alloc (lib/xarray.c:378) [ 2660.670488][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2660.670493][ C3] xas_alloc (lib/xarray.c:378) [ 2660.670497][ C3] xas_create (lib/xarray.c:685) [ 2660.670503][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2660.670508][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2660.670511][ C3] __xa_store (lib/xarray.c:1703) [ 2660.670515][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2660.670520][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2660.670523][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2660.670526][ C3] ? xa_store (lib/xarray.c:1734) [ 2660.670531][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2660.670534][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2660.670538][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2660.670543][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2660.670546][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2660.670549][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670552][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2660.670556][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2660.670561][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2660.670564][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2660.670569][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2660.670574][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2660.670578][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2660.670586][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2660.670590][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2660.670595][ C3] ksys_unshare (kernel/fork.c:3121) [ 2660.670600][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2660.670603][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2660.670607][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2660.670609][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2660.670613][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2660.670619][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2660.670623][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2660.670629][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2660.670632][ C3] RIP: 0033:0x7f439756d93b [ 2660.670636][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2660.670640][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2660.670643][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2660.670645][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2660.670647][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2660.670649][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2660.670651][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2672.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2672.656126][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2672.656129][ C0] softirqs last disabled at (0): 0x0 | [ 2672.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 2672.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2672.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2672.656146][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2672.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2672.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2672.656154][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2672.656156][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2672.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2672.656160][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2672.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2672.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2672.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2672.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2672.656172][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2672.656173][ C0] PKRU: 55555554 [ 2672.656175][ C0] Call Trace: [ 2672.656176][ C0] [ 2672.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2672.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2672.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2672.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2672.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2672.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2672.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2672.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 2672.656208][ C0] xa_store (lib/xarray.c:1734) [ 2672.656212][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2672.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2672.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2672.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2672.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2672.656231][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2672.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2672.656240][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2672.656244][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2672.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2672.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2672.656257][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2672.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2672.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2672.656272][ C0] ksys_unshare (kernel/fork.c:3121) [ 2672.656276][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2672.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2672.656283][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2672.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2672.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2672.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2672.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2672.656303][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2672.656307][ C0] RIP: 0033:0x7f439756d93b [ 2672.656310][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2672.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2672.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2672.656318][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2672.656320][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2672.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2672.656324][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2676.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2676.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2676.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2676.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2676.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2676.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2676.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2676.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2676.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2676.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2676.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2676.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2676.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2676.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2676.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2676.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2676.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2676.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2676.669173][ C2] PKRU: 55555554 [ 2676.669174][ C2] Call Trace: [ 2676.669177][ C2] [ 2676.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2676.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2676.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2676.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2676.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2676.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2676.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2676.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 2676.669209][ C2] xa_store (lib/xarray.c:1734) [ 2676.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2676.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2676.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2676.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2676.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2676.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2676.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2676.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2676.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2676.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2676.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2676.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2676.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2676.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2676.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 2676.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2676.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2676.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2676.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2676.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2676.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2676.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2676.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2676.669305][ C2] RIP: 0033:0x7f439756d93b [ 2676.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2676.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2676.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2676.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2676.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2676.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2676.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2686.368564][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2686.368846][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2686.369087][ C1] NMI backtrace for cpu 1 | [ 2686.369098][ C1] Tainted: [L]=SOFTLOCKUP [ 2686.369099][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2686.369101][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2686.369106][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2686.369110][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2686.369113][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2686.369115][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2686.369117][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2686.369119][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2686.369121][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2686.369123][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2686.369125][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2686.369129][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2686.369130][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2686.369132][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2686.369134][ C1] PKRU: 55555554 [ 2686.369135][ C1] Call Trace: [ 2686.369136][ C1] [ 2686.369138][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2686.369142][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2686.369146][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2686.369149][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2686.369154][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2686.369157][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2686.369159][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2686.369162][ C1] ? xa_store (lib/xarray.c:1734) [ 2686.369167][ C1] xa_store (lib/xarray.c:1734) [ 2686.369171][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2686.369174][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2686.369178][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2686.369181][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2686.369184][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.369188][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.369191][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2686.369196][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2686.369200][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2686.369205][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2686.369209][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2686.369213][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2686.369219][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2686.369223][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2686.369227][ C1] ksys_unshare (kernel/fork.c:3121) [ 2686.369232][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2686.369235][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2686.369239][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2686.369241][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2686.369245][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2686.369250][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2686.369254][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2686.369258][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2686.369261][ C1] RIP: 0033:0x7f439756d93b [ 2686.369264][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2686.369267][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2686.369269][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2686.369271][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2686.369273][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2686.369275][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2686.369277][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2686.369275][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2686.369277][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2686.369282][ C1] | [ 2686.370092][ C3] Tainted: [L]=SOFTLOCKUP [ 2686.370094][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2686.370096][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 2686.370102][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 2686.370106][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 2686.370109][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2686.370112][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2686.370114][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2686.370115][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2686.370117][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2686.370119][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2686.370122][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2686.370127][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2686.370129][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2686.370131][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2686.370133][ C3] PKRU: 55555554 [ 2686.370134][ C3] Call Trace: [ 2686.370135][ C3] [ 2686.370137][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2686.370141][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2686.370145][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2686.370149][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2686.370152][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2686.370155][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2686.370160][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2686.370164][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2686.370167][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2686.370170][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2686.370174][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2686.370176][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2686.370179][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2686.370182][ C3] ? xas_alloc (lib/xarray.c:378) [ 2686.370187][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2686.370190][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2686.370193][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2686.370196][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2686.370202][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2686.370205][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2686.370211][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370215][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2686.370220][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2686.370225][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370228][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2686.370231][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2686.370234][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2686.370238][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2686.370240][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2686.370247][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2686.370250][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2686.370253][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2686.370257][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2686.370261][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2686.370264][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2686.370267][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2686.370270][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370274][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2686.370278][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2686.370283][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2686.370285][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2686.370291][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2686.370295][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370298][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2686.370303][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2686.370307][ C3] handle_softirqs (kernel/softirq.c:579) [ 2686.370312][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2686.370316][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2686.370319][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2686.370322][ C3] [ 2686.370323][ C3] [ 2686.370325][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2686.370329][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2686.370332][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2686.370335][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2686.370337][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2686.370339][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2686.370341][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2686.370342][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2686.370344][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2686.370348][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2686.370353][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2686.370359][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2686.370362][ C3] ? xas_alloc (lib/xarray.c:378) [ 2686.370367][ C3] ? xas_alloc (lib/xarray.c:378) [ 2686.370370][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2686.370374][ C3] ? xas_alloc (lib/xarray.c:378) [ 2686.370377][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2686.370382][ C3] xas_alloc (lib/xarray.c:378) [ 2686.370386][ C3] xas_create (lib/xarray.c:685) [ 2686.370392][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2686.370397][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2686.370400][ C3] __xa_store (lib/xarray.c:1703) [ 2686.370404][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2686.370409][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2686.370412][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2686.370415][ C3] ? xa_store (lib/xarray.c:1734) [ 2686.370420][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2686.370423][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2686.370426][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2686.370431][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2686.370434][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2686.370436][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370440][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2686.370444][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2686.370448][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2686.370452][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2686.370457][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2686.370460][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2686.370465][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2686.370471][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2686.370475][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2686.370480][ C3] ksys_unshare (kernel/fork.c:3121) [ 2686.370485][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2686.370488][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2686.370492][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2686.370494][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2686.370498][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2686.370504][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2686.370508][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2686.370512][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2686.370515][ C3] RIP: 0033:0x7f439756d93b [ 2686.370520][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2686.370522][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2686.370525][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2686.370527][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2686.370528][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2686.370530][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2686.370531][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2700.656122][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2700.656128][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2700.656132][ C0] softirqs last disabled at (0): 0x0 | [ 2700.656140][ C0] Tainted: [L]=SOFTLOCKUP [ 2700.656142][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2700.656144][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 2700.656149][ C0] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 2700.656153][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000246 [ 2700.656155][ C0] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 2700.656157][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2700.656159][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2700.656161][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2700.656163][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2700.656165][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2700.656168][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2700.656171][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2700.656173][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2700.656174][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2700.656176][ C0] PKRU: 55555554 [ 2700.656177][ C0] Call Trace: [ 2700.656179][ C0] [ 2700.656182][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2700.656187][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2700.656190][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2700.656194][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2700.656197][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2700.656202][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2700.656205][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2700.656208][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2700.656210][ C0] ? xa_store (lib/xarray.c:1734) [ 2700.656216][ C0] xa_store (lib/xarray.c:1734) [ 2700.656220][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2700.656223][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2700.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2700.656231][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2700.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2700.656238][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2700.656242][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2700.656248][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2700.656252][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2700.656256][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2700.656260][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2700.656265][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2700.656272][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2700.656275][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2700.656280][ C0] ksys_unshare (kernel/fork.c:3121) [ 2700.656284][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2700.656288][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2700.656292][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2700.656294][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2700.656298][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2700.656303][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2700.656308][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2700.656312][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2700.656315][ C0] RIP: 0033:0x7f439756d93b [ 2700.656319][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2700.656321][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2700.656324][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2700.656326][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2700.656328][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2700.656330][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2700.656332][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2704.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2704.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2704.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2704.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 2704.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2704.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2704.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2704.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2704.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2704.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2704.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2704.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2704.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2704.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2704.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2704.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2704.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2704.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2704.669172][ C2] PKRU: 55555554 [ 2704.669173][ C2] Call Trace: [ 2704.669176][ C2] [ 2704.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2704.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2704.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2704.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2704.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2704.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2704.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2704.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 2704.669209][ C2] xa_store (lib/xarray.c:1734) [ 2704.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2704.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2704.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2704.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2704.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2704.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2704.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2704.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2704.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2704.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2704.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2704.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2704.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2704.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2704.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 2704.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2704.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2704.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2704.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2704.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2704.669295][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2704.669299][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2704.669303][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2704.669306][ C2] RIP: 0033:0x7f439756d93b [ 2704.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2704.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2704.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2704.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2704.669319][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2704.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2704.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2712.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2712.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2712.669129][ C1] softirqs last disabled at (0): 0x0 | [ 2712.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 2712.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2712.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2712.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2712.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2712.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2712.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2712.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2712.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2712.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2712.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2712.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2712.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2712.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2712.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2712.669173][ C1] PKRU: 55555554 [ 2712.669174][ C1] Call Trace: [ 2712.669176][ C1] [ 2712.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2712.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2712.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2712.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2712.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2712.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2712.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2712.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 2712.669207][ C1] xa_store (lib/xarray.c:1734) [ 2712.669210][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2712.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2712.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2712.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2712.669224][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.669232][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2712.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2712.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2712.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2712.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2712.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2712.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2712.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2712.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 2712.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2712.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2712.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2712.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2712.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2712.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2712.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2712.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2712.669303][ C1] RIP: 0033:0x7f439756d93b [ 2712.669306][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2712.669309][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2712.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2712.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2712.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2712.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2712.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2712.670150][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2712.670158][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2712.670161][ C3] softirqs last disabled at (0): 0x0 | [ 2712.670173][ C3] Tainted: [L]=SOFTLOCKUP [ 2712.670175][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2712.670177][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2712.670186][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2712.670189][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2712.670192][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2712.670194][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2712.670196][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2712.670198][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2712.670200][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2712.670202][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2712.670205][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2712.670209][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2712.670211][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2712.670212][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2712.670214][ C3] PKRU: 55555554 [ 2712.670215][ C3] Call Trace: [ 2712.670219][ C3] [ 2712.670221][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2712.670226][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2712.670232][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2712.670235][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2712.670240][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2712.670244][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2712.670247][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2712.670251][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2712.670255][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2712.670258][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2712.670261][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2712.670263][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2712.670266][ C3] ? xas_alloc (lib/xarray.c:378) [ 2712.670272][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2712.670277][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2712.670280][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2712.670283][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2712.670289][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2712.670293][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2712.670299][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670303][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2712.670309][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2712.670315][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670318][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2712.670321][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2712.670325][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2712.670328][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2712.670331][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2712.670337][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2712.670340][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2712.670343][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2712.670347][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2712.670352][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2712.670355][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2712.670358][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2712.670362][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670366][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2712.670370][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2712.670374][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2712.670377][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2712.670383][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2712.670387][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670390][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2712.670395][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2712.670400][ C3] handle_softirqs (kernel/softirq.c:579) [ 2712.670406][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2712.670410][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2712.670413][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2712.670417][ C3] [ 2712.670418][ C3] [ 2712.670420][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2712.670426][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2712.670429][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2712.670432][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2712.670435][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2712.670437][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2712.670439][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2712.670441][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2712.670443][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2712.670447][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2712.670453][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2712.670459][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2712.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 2712.670468][ C3] ? xas_alloc (lib/xarray.c:378) [ 2712.670471][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2712.670475][ C3] ? xas_alloc (lib/xarray.c:378) [ 2712.670478][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2712.670483][ C3] xas_alloc (lib/xarray.c:378) [ 2712.670488][ C3] xas_create (lib/xarray.c:685) [ 2712.670494][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2712.670499][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2712.670503][ C3] __xa_store (lib/xarray.c:1703) [ 2712.670507][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2712.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2712.670515][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2712.670518][ C3] ? xa_store (lib/xarray.c:1734) [ 2712.670523][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2712.670527][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2712.670530][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2712.670535][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2712.670538][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2712.670541][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2712.670549][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2712.670554][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2712.670558][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2712.670562][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2712.670566][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2712.670571][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2712.670579][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2712.670582][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2712.670588][ C3] ksys_unshare (kernel/fork.c:3121) [ 2712.670592][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2712.670596][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2712.670599][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2712.670602][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2712.670606][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2712.670612][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2712.670615][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2712.670621][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2712.670625][ C3] RIP: 0033:0x7f439756d93b [ 2712.670629][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2712.670632][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2712.670635][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2712.670638][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2712.670640][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2712.670642][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2712.670644][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2728.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2728.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2728.656129][ C0] softirqs last disabled at (0): 0x0 | [ 2728.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 2728.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2728.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2728.656146][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2728.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2728.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2728.656154][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2728.656156][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2728.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2728.656160][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2728.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2728.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2728.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2728.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2728.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2728.656173][ C0] PKRU: 55555554 [ 2728.656174][ C0] Call Trace: [ 2728.656176][ C0] [ 2728.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2728.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2728.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2728.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2728.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2728.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2728.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2728.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 2728.656207][ C0] xa_store (lib/xarray.c:1734) [ 2728.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2728.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2728.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2728.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2728.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2728.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2728.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2728.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2728.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2728.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2728.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2728.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2728.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2728.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2728.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 2728.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2728.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2728.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2728.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2728.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2728.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2728.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2728.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2728.656304][ C0] RIP: 0033:0x7f439756d93b [ 2728.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2728.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2728.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2728.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2728.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2728.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2728.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2732.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2732.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2732.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2732.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2732.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2732.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2732.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2732.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2732.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2732.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2732.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2732.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2732.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2732.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2732.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2732.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2732.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2732.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2732.669173][ C2] PKRU: 55555554 [ 2732.669174][ C2] Call Trace: [ 2732.669176][ C2] [ 2732.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2732.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2732.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2732.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2732.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2732.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2732.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2732.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 2732.669208][ C2] xa_store (lib/xarray.c:1734) [ 2732.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2732.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2732.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2732.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2732.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2732.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2732.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2732.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2732.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2732.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2732.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2732.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2732.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2732.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2732.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 2732.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2732.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2732.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2732.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2732.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2732.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2732.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2732.669303][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2732.669306][ C2] RIP: 0033:0x7f439756d93b [ 2732.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2732.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2732.669315][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2732.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2732.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2732.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2732.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2740.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2740.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2740.669128][ C1] softirqs last disabled at (0): 0x0 | [ 2740.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 2740.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2740.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2740.669145][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2740.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2740.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2740.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2740.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2740.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2740.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2740.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2740.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2740.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2740.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2740.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2740.669172][ C1] PKRU: 55555554 [ 2740.669173][ C1] Call Trace: [ 2740.669174][ C1] [ 2740.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2740.669180][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2740.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2740.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2740.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2740.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2740.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2740.669200][ C1] ? xa_store (lib/xarray.c:1734) [ 2740.669205][ C1] xa_store (lib/xarray.c:1734) [ 2740.669209][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2740.669213][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2740.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2740.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2740.669223][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2740.669236][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2740.669240][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2740.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2740.669249][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2740.669253][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2740.669260][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2740.669264][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2740.669268][ C1] ksys_unshare (kernel/fork.c:3121) [ 2740.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2740.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2740.669279][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2740.669282][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2740.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2740.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2740.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2740.669299][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2740.669302][ C1] RIP: 0033:0x7f439756d93b [ 2740.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2740.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2740.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2740.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2740.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2740.669316][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2740.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2740.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2740.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2740.670163][ C3] softirqs last disabled at (0): 0x0 | [ 2740.670175][ C3] Tainted: [L]=SOFTLOCKUP [ 2740.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2740.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2740.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2740.670190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2740.670193][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2740.670195][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2740.670197][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2740.670199][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2740.670201][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2740.670203][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2740.670206][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2740.670210][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2740.670212][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2740.670213][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2740.670215][ C3] PKRU: 55555554 [ 2740.670217][ C3] Call Trace: [ 2740.670221][ C3] [ 2740.670222][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2740.670229][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2740.670234][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2740.670237][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2740.670243][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2740.670247][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2740.670250][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2740.670254][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2740.670258][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2740.670261][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2740.670264][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2740.670267][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2740.670270][ C3] ? xas_alloc (lib/xarray.c:378) [ 2740.670276][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2740.670280][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2740.670283][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2740.670287][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2740.670293][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2740.670297][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2740.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670307][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2740.670314][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2740.670320][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670323][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2740.670327][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2740.670330][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2740.670333][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2740.670336][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2740.670342][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2740.670345][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2740.670348][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2740.670352][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2740.670357][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2740.670360][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2740.670363][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2740.670367][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670370][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2740.670375][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2740.670380][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2740.670382][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2740.670388][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2740.670392][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670395][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2740.670400][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2740.670405][ C3] handle_softirqs (kernel/softirq.c:579) [ 2740.670411][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2740.670414][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2740.670418][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2740.670422][ C3] [ 2740.670424][ C3] [ 2740.670425][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2740.670431][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2740.670434][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2740.670437][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2740.670440][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2740.670442][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2740.670444][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2740.670446][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2740.670448][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2740.670452][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2740.670457][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2740.670463][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2740.670467][ C3] ? xas_alloc (lib/xarray.c:378) [ 2740.670471][ C3] ? xas_alloc (lib/xarray.c:378) [ 2740.670474][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2740.670478][ C3] ? xas_alloc (lib/xarray.c:378) [ 2740.670481][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2740.670486][ C3] xas_alloc (lib/xarray.c:378) [ 2740.670491][ C3] xas_create (lib/xarray.c:685) [ 2740.670497][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2740.670501][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2740.670505][ C3] __xa_store (lib/xarray.c:1703) [ 2740.670509][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2740.670514][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2740.670516][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2740.670519][ C3] ? xa_store (lib/xarray.c:1734) [ 2740.670524][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2740.670528][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2740.670531][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2740.670536][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2740.670539][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2740.670542][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2740.670549][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2740.670554][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2740.670558][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2740.670563][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2740.670566][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2740.670571][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2740.670579][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2740.670583][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2740.670589][ C3] ksys_unshare (kernel/fork.c:3121) [ 2740.670593][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2740.670596][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2740.670600][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2740.670603][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2740.670606][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2740.670612][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2740.670617][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2740.670621][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2740.670625][ C3] RIP: 0033:0x7f439756d93b [ 2740.670629][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2740.670632][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2740.670634][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2740.670636][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2740.670638][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2740.670640][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2740.670642][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2756.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2756.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2756.656127][ C0] softirqs last disabled at (0): 0x0 | [ 2756.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 2756.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2756.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2756.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2756.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2756.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2756.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2756.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2756.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2756.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2756.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2756.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2756.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2756.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2756.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2756.656170][ C0] PKRU: 55555554 [ 2756.656171][ C0] Call Trace: [ 2756.656173][ C0] [ 2756.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2756.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2756.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2756.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2756.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2756.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2756.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2756.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 2756.656206][ C0] xa_store (lib/xarray.c:1734) [ 2756.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2756.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2756.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2756.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2756.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2756.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2756.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2756.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2756.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2756.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2756.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2756.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2756.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2756.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2756.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 2756.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2756.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2756.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2756.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2756.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2756.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2756.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2756.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2756.656302][ C0] RIP: 0033:0x7f439756d93b [ 2756.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2756.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2756.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2756.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2756.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2756.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2756.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2760.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2760.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2760.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2760.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2760.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2760.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2760.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2760.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2760.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2760.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2760.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2760.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2760.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2760.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2760.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2760.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2760.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2760.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2760.669172][ C2] PKRU: 55555554 [ 2760.669174][ C2] Call Trace: [ 2760.669175][ C2] [ 2760.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2760.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2760.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2760.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2760.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2760.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2760.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2760.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 2760.669207][ C2] xa_store (lib/xarray.c:1734) [ 2760.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2760.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2760.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2760.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2760.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2760.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2760.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2760.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2760.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2760.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2760.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2760.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2760.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2760.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2760.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 2760.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2760.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2760.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2760.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2760.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2760.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2760.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2760.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2760.669303][ C2] RIP: 0033:0x7f439756d93b [ 2760.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2760.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2760.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2760.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2760.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2760.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2760.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2764.382821][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2764.383097][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2764.383344][ C1] NMI backtrace for cpu 1 | [ 2764.383354][ C1] Tainted: [L]=SOFTLOCKUP [ 2764.383356][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2764.383358][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2764.383363][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2764.383367][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2764.383370][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2764.383372][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2764.383374][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2764.383376][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2764.383378][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2764.383380][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2764.383382][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2764.383385][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2764.383387][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2764.383388][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2764.383390][ C1] PKRU: 55555554 [ 2764.383391][ C1] Call Trace: [ 2764.383393][ C1] [ 2764.383395][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2764.383399][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2764.383403][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2764.383406][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2764.383411][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2764.383414][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2764.383416][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2764.383419][ C1] ? xa_store (lib/xarray.c:1734) [ 2764.383425][ C1] xa_store (lib/xarray.c:1734) [ 2764.383429][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2764.383432][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2764.383437][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2764.383439][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2764.383442][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.383446][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.383450][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2764.383455][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2764.383459][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2764.383463][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2764.383467][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2764.383471][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2764.383478][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2764.383482][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2764.383486][ C1] ksys_unshare (kernel/fork.c:3121) [ 2764.383490][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2764.383494][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2764.383497][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2764.383500][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2764.383504][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2764.383509][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2764.383512][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2764.383516][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2764.383520][ C1] RIP: 0033:0x7f439756d93b [ 2764.383523][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2764.383525][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2764.383528][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2764.383530][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2764.383532][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2764.383534][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2764.383536][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2764.383534][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2764.383536][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2764.383542][ C1] | [ 2764.384348][ C3] Tainted: [L]=SOFTLOCKUP [ 2764.384350][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2764.384352][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2764.384357][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2764.384361][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2764.384365][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2764.384367][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2764.384369][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2764.384371][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2764.384373][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2764.384375][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2764.384378][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2764.384382][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2764.384385][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2764.384387][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2764.384388][ C3] PKRU: 55555554 [ 2764.384390][ C3] Call Trace: [ 2764.384391][ C3] [ 2764.384393][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2764.384398][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2764.384402][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2764.384406][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2764.384409][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2764.384414][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2764.384417][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2764.384421][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2764.384424][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2764.384428][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2764.384430][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2764.384433][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2764.384436][ C3] ? xas_alloc (lib/xarray.c:378) [ 2764.384441][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2764.384444][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2764.384447][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2764.384450][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2764.384456][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2764.384459][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2764.384465][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384468][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2764.384475][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2764.384480][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384483][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2764.384486][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2764.384489][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2764.384493][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2764.384495][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2764.384501][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2764.384503][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2764.384506][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2764.384511][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2764.384515][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2764.384518][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2764.384521][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2764.384524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384527][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2764.384532][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2764.384536][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2764.384539][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2764.384544][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2764.384547][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384551][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2764.384556][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2764.384560][ C3] handle_softirqs (kernel/softirq.c:579) [ 2764.384565][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2764.384569][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2764.384572][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2764.384576][ C3] [ 2764.384577][ C3] [ 2764.384579][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2764.384582][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2764.384585][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2764.384588][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2764.384590][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2764.384592][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2764.384593][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2764.384595][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2764.384597][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2764.384601][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2764.384606][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2764.384611][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2764.384615][ C3] ? xas_alloc (lib/xarray.c:378) [ 2764.384619][ C3] ? xas_alloc (lib/xarray.c:378) [ 2764.384622][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2764.384626][ C3] ? xas_alloc (lib/xarray.c:378) [ 2764.384628][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2764.384633][ C3] xas_alloc (lib/xarray.c:378) [ 2764.384638][ C3] xas_create (lib/xarray.c:685) [ 2764.384643][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2764.384647][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2764.384651][ C3] __xa_store (lib/xarray.c:1703) [ 2764.384655][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2764.384660][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2764.384662][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2764.384665][ C3] ? xa_store (lib/xarray.c:1734) [ 2764.384670][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2764.384674][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2764.384677][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2764.384681][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2764.384684][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2764.384687][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384691][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2764.384694][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2764.384699][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2764.384702][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2764.384707][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2764.384711][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2764.384715][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2764.384721][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2764.384725][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2764.384730][ C3] ksys_unshare (kernel/fork.c:3121) [ 2764.384735][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2764.384739][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2764.384742][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2764.384745][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2764.384749][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2764.384755][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2764.384759][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2764.384763][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2764.384766][ C3] RIP: 0033:0x7f439756d93b [ 2764.384770][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2764.384773][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2764.384776][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2764.384777][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2764.384779][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2764.384780][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2764.384782][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2784.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2784.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2784.656127][ C0] softirqs last disabled at (0): 0x0 | [ 2784.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 2784.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2784.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2784.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2784.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2784.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2784.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2784.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2784.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2784.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2784.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2784.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2784.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2784.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2784.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2784.656171][ C0] PKRU: 55555554 [ 2784.656172][ C0] Call Trace: [ 2784.656174][ C0] [ 2784.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2784.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2784.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2784.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2784.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2784.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2784.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2784.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 2784.656206][ C0] xa_store (lib/xarray.c:1734) [ 2784.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2784.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2784.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2784.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2784.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2784.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2784.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2784.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2784.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2784.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2784.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2784.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2784.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2784.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2784.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 2784.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2784.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2784.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2784.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2784.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2784.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2784.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2784.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2784.656303][ C0] RIP: 0033:0x7f439756d93b [ 2784.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2784.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2784.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2784.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2784.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2784.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2784.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2788.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2788.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2788.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2788.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2788.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2788.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2788.669146][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2788.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2788.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2788.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2788.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2788.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2788.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2788.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2788.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2788.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2788.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2788.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2788.669173][ C2] PKRU: 55555554 [ 2788.669175][ C2] Call Trace: [ 2788.669177][ C2] [ 2788.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2788.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2788.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2788.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 2788.669208][ C2] xa_store (lib/xarray.c:1734) [ 2788.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2788.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2788.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2788.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2788.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2788.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2788.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2788.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2788.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2788.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2788.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 2788.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2788.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2788.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2788.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2788.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2788.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2788.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2788.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2788.669304][ C2] RIP: 0033:0x7f439756d93b [ 2788.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2788.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2788.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2788.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2788.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2788.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2788.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2788.669348][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2788.669353][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2788.669356][ C1] softirqs last disabled at (0): 0x0 | [ 2788.669365][ C1] Tainted: [L]=SOFTLOCKUP [ 2788.669367][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2788.669369][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2788.669373][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2788.669376][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2788.669379][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2788.669381][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2788.669383][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2788.669385][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2788.669387][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2788.669389][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2788.669391][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2788.669395][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2788.669397][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2788.669398][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2788.669400][ C1] PKRU: 55555554 [ 2788.669401][ C1] Call Trace: [ 2788.669402][ C1] [ 2788.669404][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2788.669408][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.669412][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.669415][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2788.669420][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2788.669423][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.669426][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.669428][ C1] ? xa_store (lib/xarray.c:1734) [ 2788.669433][ C1] xa_store (lib/xarray.c:1734) [ 2788.669437][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2788.669440][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2788.669445][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.669448][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.669451][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.669456][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.669459][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2788.669464][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2788.669468][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2788.669473][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2788.669477][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2788.669481][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2788.669487][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2788.669491][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2788.669495][ C1] ksys_unshare (kernel/fork.c:3121) [ 2788.669499][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2788.669503][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2788.669507][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2788.669509][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2788.669512][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2788.669518][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2788.669522][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2788.669526][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2788.669529][ C1] RIP: 0033:0x7f439756d93b [ 2788.669532][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2788.669534][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2788.669537][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2788.669540][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2788.669541][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2788.669543][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2788.669545][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2788.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2788.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2788.670163][ C3] softirqs last disabled at (0): 0x0 | [ 2788.670175][ C3] Tainted: [L]=SOFTLOCKUP [ 2788.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2788.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2788.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2788.670190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2788.670194][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2788.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2788.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2788.670200][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2788.670202][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2788.670205][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2788.670207][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2788.670212][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2788.670214][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2788.670216][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2788.670218][ C3] PKRU: 55555554 [ 2788.670219][ C3] Call Trace: [ 2788.670223][ C3] [ 2788.670225][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2788.670231][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2788.670236][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2788.670239][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2788.670244][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2788.670248][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2788.670252][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2788.670256][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2788.670259][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2788.670262][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2788.670265][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2788.670268][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2788.670271][ C3] ? xas_alloc (lib/xarray.c:378) [ 2788.670277][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2788.670282][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.670284][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.670288][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2788.670294][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2788.670298][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2788.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670308][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2788.670314][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2788.670320][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670323][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2788.670326][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2788.670330][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2788.670334][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2788.670337][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2788.670342][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2788.670345][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2788.670349][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2788.670353][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2788.670358][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2788.670361][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2788.670364][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2788.670368][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670371][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2788.670376][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2788.670381][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2788.670384][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2788.670390][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2788.670394][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670398][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2788.670403][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2788.670407][ C3] handle_softirqs (kernel/softirq.c:579) [ 2788.670414][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2788.670417][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2788.670420][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2788.670425][ C3] [ 2788.670426][ C3] [ 2788.670427][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2788.670433][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2788.670436][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2788.670438][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2788.670442][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2788.670444][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2788.670446][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2788.670448][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2788.670450][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2788.670454][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2788.670460][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2788.670466][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2788.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 2788.670474][ C3] ? xas_alloc (lib/xarray.c:378) [ 2788.670477][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2788.670481][ C3] ? xas_alloc (lib/xarray.c:378) [ 2788.670484][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2788.670489][ C3] xas_alloc (lib/xarray.c:378) [ 2788.670494][ C3] xas_create (lib/xarray.c:685) [ 2788.670500][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2788.670504][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.670508][ C3] __xa_store (lib/xarray.c:1703) [ 2788.670512][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2788.670517][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.670520][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2788.670523][ C3] ? xa_store (lib/xarray.c:1734) [ 2788.670528][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2788.670532][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2788.670536][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2788.670541][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2788.670544][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2788.670547][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670551][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2788.670554][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2788.670559][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2788.670563][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2788.670568][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2788.670572][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2788.670577][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2788.670585][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2788.670589][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2788.670595][ C3] ksys_unshare (kernel/fork.c:3121) [ 2788.670599][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2788.670602][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2788.670606][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2788.670609][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2788.670612][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2788.670619][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2788.670623][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2788.670628][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2788.670631][ C3] RIP: 0033:0x7f439756d93b [ 2788.670635][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2788.670637][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2788.670640][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2788.670642][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2788.670644][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2788.670646][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2788.670648][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2812.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2812.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2812.656128][ C0] softirqs last disabled at (0): 0x0 | [ 2812.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 2812.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2812.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2812.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2812.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2812.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2812.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2812.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2812.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2812.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2812.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2812.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2812.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2812.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2812.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2812.656172][ C0] PKRU: 55555554 [ 2812.656173][ C0] Call Trace: [ 2812.656175][ C0] [ 2812.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2812.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2812.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2812.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2812.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2812.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2812.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2812.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 2812.656208][ C0] xa_store (lib/xarray.c:1734) [ 2812.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2812.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2812.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2812.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2812.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2812.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2812.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2812.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2812.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2812.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2812.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2812.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2812.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2812.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2812.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 2812.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2812.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2812.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2812.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2812.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2812.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2812.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2812.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2812.656305][ C0] RIP: 0033:0x7f439756d93b [ 2812.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2812.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2812.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2812.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2812.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2812.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2812.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2816.669130][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2816.669137][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2816.669140][ C2] softirqs last disabled at (0): 0x0 | [ 2816.669152][ C2] Tainted: [L]=SOFTLOCKUP [ 2816.669154][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2816.669156][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2816.669164][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2816.669168][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2816.669171][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2816.669173][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2816.669175][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2816.669177][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2816.669179][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2816.669181][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2816.669183][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2816.669188][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2816.669190][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2816.669191][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2816.669193][ C2] PKRU: 55555554 [ 2816.669194][ C2] Call Trace: [ 2816.669198][ C2] [ 2816.669201][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2816.669205][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.669209][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.669213][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2816.669219][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2816.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.669226][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.669229][ C2] ? xa_store (lib/xarray.c:1734) [ 2816.669235][ C2] xa_store (lib/xarray.c:1734) [ 2816.669239][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2816.669244][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2816.669248][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.669251][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.669254][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.669259][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.669263][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2816.669269][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2816.669273][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2816.669278][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2816.669283][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2816.669288][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2816.669295][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2816.669300][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2816.669305][ C2] ksys_unshare (kernel/fork.c:3121) [ 2816.669310][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2816.669314][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2816.669319][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2816.669322][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2816.669326][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2816.669331][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2816.669335][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2816.669340][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2816.669344][ C2] RIP: 0033:0x7f439756d93b [ 2816.669349][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2816.669352][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2816.669355][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2816.669357][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2816.669359][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2816.669361][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2816.669362][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2816.669391][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2816.669397][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2816.669400][ C1] softirqs last disabled at (0): 0x0 | [ 2816.669409][ C1] Tainted: [L]=SOFTLOCKUP [ 2816.669410][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2816.669412][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2816.669417][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2816.669421][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2816.669423][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2816.669425][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2816.669427][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2816.669429][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2816.669432][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2816.669434][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2816.669436][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2816.669440][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2816.669442][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2816.669443][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2816.669445][ C1] PKRU: 55555554 [ 2816.669446][ C1] Call Trace: [ 2816.669448][ C1] [ 2816.669450][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2816.669454][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.669458][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.669462][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2816.669467][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2816.669470][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.669473][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.669476][ C1] ? xa_store (lib/xarray.c:1734) [ 2816.669481][ C1] xa_store (lib/xarray.c:1734) [ 2816.669486][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2816.669489][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2816.669494][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.669496][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.669499][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.669504][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.669507][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2816.669513][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2816.669517][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2816.669521][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2816.669525][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2816.669530][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2816.669536][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2816.669540][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2816.669545][ C1] ksys_unshare (kernel/fork.c:3121) [ 2816.669549][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2816.669553][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2816.669557][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2816.669559][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2816.669563][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2816.669568][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2816.669572][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2816.669577][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2816.669580][ C1] RIP: 0033:0x7f439756d93b [ 2816.669583][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2816.669586][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2816.669588][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2816.669591][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2816.669593][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2816.669594][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2816.669596][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2816.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2816.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2816.670147][ C3] softirqs last disabled at (0): 0x0 | [ 2816.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 2816.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2816.670163][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2816.670171][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2816.670175][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2816.670178][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2816.670180][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2816.670182][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2816.670184][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2816.670186][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2816.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2816.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2816.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2816.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2816.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2816.670201][ C3] PKRU: 55555554 [ 2816.670202][ C3] Call Trace: [ 2816.670206][ C3] [ 2816.670208][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2816.670214][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2816.670219][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2816.670222][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2816.670227][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2816.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2816.670235][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2816.670240][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2816.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2816.670247][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2816.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2816.670252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2816.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 2816.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2816.670265][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.670268][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.670272][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2816.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2816.670281][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2816.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670291][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2816.670297][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2816.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670306][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2816.670309][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2816.670313][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2816.670316][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2816.670319][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2816.670326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2816.670329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2816.670332][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2816.670336][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2816.670341][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2816.670345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2816.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2816.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2816.670359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2816.670364][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2816.670366][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2816.670372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2816.670376][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670379][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2816.670384][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2816.670388][ C3] handle_softirqs (kernel/softirq.c:579) [ 2816.670395][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2816.670399][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2816.670402][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2816.670406][ C3] [ 2816.670407][ C3] [ 2816.670409][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2816.670414][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2816.670417][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2816.670420][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2816.670423][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2816.670425][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2816.670427][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2816.670429][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2816.670431][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2816.670435][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2816.670441][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2816.670447][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2816.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 2816.670456][ C3] ? xas_alloc (lib/xarray.c:378) [ 2816.670459][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2816.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 2816.670466][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2816.670471][ C3] xas_alloc (lib/xarray.c:378) [ 2816.670476][ C3] xas_create (lib/xarray.c:685) [ 2816.670482][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2816.670487][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.670490][ C3] __xa_store (lib/xarray.c:1703) [ 2816.670494][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2816.670499][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.670502][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2816.670505][ C3] ? xa_store (lib/xarray.c:1734) [ 2816.670510][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2816.670514][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2816.670517][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2816.670522][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2816.670526][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2816.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670532][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2816.670535][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2816.670540][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2816.670544][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2816.670549][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2816.670553][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2816.670557][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2816.670565][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2816.670568][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2816.670574][ C3] ksys_unshare (kernel/fork.c:3121) [ 2816.670578][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2816.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2816.670585][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2816.670587][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2816.670591][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2816.670597][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2816.670600][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2816.670606][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2816.670609][ C3] RIP: 0033:0x7f439756d93b [ 2816.670613][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2816.670615][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2816.670618][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2816.670620][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2816.670622][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2816.670624][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2816.670625][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2840.656123][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2840.656129][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2840.656132][ C0] softirqs last disabled at (0): 0x0 | [ 2840.656142][ C0] Tainted: [L]=SOFTLOCKUP [ 2840.656143][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2840.656145][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2840.656150][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2840.656153][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2840.656156][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2840.656158][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2840.656160][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2840.656162][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2840.656164][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2840.656166][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2840.656169][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2840.656172][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2840.656174][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2840.656176][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2840.656177][ C0] PKRU: 55555554 [ 2840.656179][ C0] Call Trace: [ 2840.656181][ C0] [ 2840.656183][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2840.656187][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2840.656190][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2840.656194][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2840.656200][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2840.656203][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2840.656206][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2840.656209][ C0] ? xa_store (lib/xarray.c:1734) [ 2840.656214][ C0] xa_store (lib/xarray.c:1734) [ 2840.656218][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2840.656222][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2840.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2840.656230][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2840.656233][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2840.656238][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2840.656242][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2840.656247][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2840.656251][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2840.656256][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2840.656260][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2840.656264][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2840.656271][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2840.656275][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2840.656280][ C0] ksys_unshare (kernel/fork.c:3121) [ 2840.656284][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2840.656288][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2840.656292][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2840.656294][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2840.656298][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2840.656303][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2840.656307][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2840.656312][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2840.656315][ C0] RIP: 0033:0x7f439756d93b [ 2840.656318][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2840.656321][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2840.656324][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2840.656326][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2840.656328][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2840.656330][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2840.656332][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2842.396791][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2842.397067][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2842.397306][ C1] NMI backtrace for cpu 1 | [ 2842.397316][ C1] Tainted: [L]=SOFTLOCKUP [ 2842.397318][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2842.397319][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2842.397325][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2842.397328][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2842.397331][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2842.397333][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2842.397335][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2842.397337][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2842.397339][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2842.397341][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2842.397343][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2842.397346][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2842.397348][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2842.397349][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2842.397351][ C1] PKRU: 55555554 [ 2842.397352][ C1] Call Trace: [ 2842.397353][ C1] [ 2842.397355][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2842.397359][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2842.397362][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2842.397365][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2842.397370][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2842.397373][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2842.397376][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2842.397379][ C1] ? xa_store (lib/xarray.c:1734) [ 2842.397384][ C1] xa_store (lib/xarray.c:1734) [ 2842.397387][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2842.397390][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2842.397395][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2842.397398][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2842.397400][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.397404][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.397408][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2842.397413][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2842.397417][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2842.397423][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2842.397427][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2842.397431][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2842.397437][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2842.397441][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2842.397445][ C1] ksys_unshare (kernel/fork.c:3121) [ 2842.397450][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2842.397453][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2842.397457][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2842.397459][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2842.397463][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2842.397468][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2842.397472][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2842.397476][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2842.397479][ C1] RIP: 0033:0x7f439756d93b [ 2842.397482][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2842.397485][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2842.397488][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2842.397490][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2842.397492][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2842.397493][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2842.397496][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2842.397493][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2842.397496][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2842.397501][ C1] | [ 2842.398311][ C3] Tainted: [L]=SOFTLOCKUP [ 2842.398313][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2842.398315][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2842.398320][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2842.398323][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2842.398326][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2842.398329][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2842.398331][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2842.398333][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2842.398334][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2842.398336][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2842.398339][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2842.398342][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2842.398344][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2842.398346][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2842.398348][ C3] PKRU: 55555554 [ 2842.398349][ C3] Call Trace: [ 2842.398350][ C3] [ 2842.398352][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2842.398357][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2842.398361][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2842.398364][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2842.398367][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2842.398372][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2842.398375][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2842.398379][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2842.398383][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2842.398386][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2842.398389][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2842.398391][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2842.398394][ C3] ? xas_alloc (lib/xarray.c:378) [ 2842.398399][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2842.398403][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2842.398406][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2842.398409][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2842.398414][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2842.398418][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2842.398423][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398426][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2842.398433][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2842.398437][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398440][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2842.398443][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2842.398447][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2842.398450][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2842.398452][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2842.398458][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2842.398461][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2842.398464][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2842.398469][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2842.398473][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2842.398476][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2842.398479][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2842.398483][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398486][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2842.398490][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2842.398495][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2842.398497][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2842.398502][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2842.398506][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398509][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2842.398515][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2842.398519][ C3] handle_softirqs (kernel/softirq.c:579) [ 2842.398524][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2842.398527][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2842.398531][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2842.398534][ C3] [ 2842.398535][ C3] [ 2842.398537][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2842.398540][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2842.398543][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2842.398546][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2842.398548][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2842.398551][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2842.398552][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2842.398554][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2842.398556][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2842.398560][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2842.398566][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2842.398571][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2842.398575][ C3] ? xas_alloc (lib/xarray.c:378) [ 2842.398579][ C3] ? xas_alloc (lib/xarray.c:378) [ 2842.398582][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2842.398586][ C3] ? xas_alloc (lib/xarray.c:378) [ 2842.398589][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2842.398594][ C3] xas_alloc (lib/xarray.c:378) [ 2842.398598][ C3] xas_create (lib/xarray.c:685) [ 2842.398604][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2842.398608][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2842.398612][ C3] __xa_store (lib/xarray.c:1703) [ 2842.398616][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2842.398620][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2842.398623][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2842.398626][ C3] ? xa_store (lib/xarray.c:1734) [ 2842.398631][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2842.398635][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2842.398638][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2842.398643][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2842.398645][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2842.398648][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398652][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2842.398655][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2842.398660][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2842.398664][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2842.398668][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2842.398672][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2842.398676][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2842.398683][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2842.398686][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2842.398691][ C3] ksys_unshare (kernel/fork.c:3121) [ 2842.398696][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2842.398699][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2842.398703][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2842.398706][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2842.398709][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2842.398715][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2842.398719][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2842.398723][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2842.398726][ C3] RIP: 0033:0x7f439756d93b [ 2842.398731][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2842.398733][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2842.398736][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2842.398738][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2842.398739][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2842.398741][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2842.398743][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2844.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2844.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2844.669130][ C2] softirqs last disabled at (0): 0x0 | [ 2844.669140][ C2] Tainted: [L]=SOFTLOCKUP [ 2844.669141][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2844.669143][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2844.669148][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2844.669152][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2844.669154][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2844.669156][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2844.669158][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2844.669160][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2844.669162][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2844.669164][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2844.669166][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2844.669171][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2844.669173][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2844.669174][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2844.669176][ C2] PKRU: 55555554 [ 2844.669177][ C2] Call Trace: [ 2844.669179][ C2] [ 2844.669182][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2844.669186][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2844.669190][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2844.669193][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2844.669198][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2844.669202][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2844.669204][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2844.669207][ C2] ? xa_store (lib/xarray.c:1734) [ 2844.669213][ C2] xa_store (lib/xarray.c:1734) [ 2844.669217][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2844.669220][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2844.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2844.669228][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2844.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2844.669235][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2844.669239][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2844.669244][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2844.669248][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2844.669253][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2844.669257][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2844.669261][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2844.669267][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2844.669271][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2844.669275][ C2] ksys_unshare (kernel/fork.c:3121) [ 2844.669279][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2844.669283][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2844.669286][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2844.669289][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2844.669293][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2844.669298][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2844.669302][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2844.669307][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2844.669310][ C2] RIP: 0033:0x7f439756d93b [ 2844.669313][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2844.669316][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2844.669319][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2844.669321][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2844.669323][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2844.669325][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2844.669327][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2868.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2868.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2868.656128][ C0] softirqs last disabled at (0): 0x0 | [ 2868.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 2868.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2868.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2868.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2868.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2868.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2868.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2868.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2868.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2868.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2868.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2868.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2868.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2868.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2868.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2868.656172][ C0] PKRU: 55555554 [ 2868.656174][ C0] Call Trace: [ 2868.656176][ C0] [ 2868.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2868.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2868.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2868.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 2868.656208][ C0] xa_store (lib/xarray.c:1734) [ 2868.656212][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2868.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2868.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2868.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2868.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2868.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2868.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2868.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2868.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2868.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2868.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 2868.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2868.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2868.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2868.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2868.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2868.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2868.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2868.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2868.656304][ C0] RIP: 0033:0x7f439756d93b [ 2868.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2868.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2868.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2868.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2868.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2868.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2868.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2868.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2868.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2868.669129][ C1] softirqs last disabled at (0): 0x0 | [ 2868.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 2868.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2868.669141][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 2868.669146][ C1] Code: 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 <48> 01 f0 55 53 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe All code ======== 0: 0f 1f 40 00 nopl 0x0(%rax) 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 66 0f 1f 00 nopw (%rax) 18: 48 85 f6 test %rsi,%rsi 1b: 0f 84 5e 01 00 00 je 0x17f 21: 48 89 f8 mov %rdi,%rax 24: 41 54 push %r12 26: 44 0f b6 c2 movzbl %dl,%r8d 2a:* 48 01 f0 add %rsi,%rax <-- trapping instruction 2d: 55 push %rbp 2e: 53 push %rbx 2f: 72 14 jb 0x45 31: eb 26 jmp 0x59 33: cc int3 34: cc int3 35: cc int3 36: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 3d: ff ff fe Code starting with the faulting instruction =========================================== 0: 48 01 f0 add %rsi,%rax 3: 55 push %rbp 4: 53 push %rbx 5: 72 14 jb 0x1b 7: eb 26 jmp 0x2f 9: cc int3 a: cc int3 b: cc int3 c: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 13: ff ff fe [ 2868.669149][ C1] RSP: 0018:ffffc900034b7a08 EFLAGS: 00000202 [ 2868.669152][ C1] RAX: ffffffffbbee5c00 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2868.669154][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2868.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2868.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2868.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2868.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2868.669165][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2868.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2868.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2868.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2868.669173][ C1] PKRU: 55555554 [ 2868.669174][ C1] Call Trace: [ 2868.669176][ C1] [ 2868.669177][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2868.669182][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2868.669185][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.669189][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.669192][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2868.669197][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2868.669200][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.669202][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.669205][ C1] ? xa_store (lib/xarray.c:1734) [ 2868.669210][ C1] xa_store (lib/xarray.c:1734) [ 2868.669214][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2868.669217][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2868.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.669233][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.669236][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2868.669241][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2868.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2868.669250][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2868.669254][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2868.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2868.669265][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2868.669269][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2868.669273][ C1] ksys_unshare (kernel/fork.c:3121) [ 2868.669277][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2868.669281][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2868.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2868.669287][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2868.669291][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2868.669296][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2868.669300][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2868.669304][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2868.669307][ C1] RIP: 0033:0x7f439756d93b [ 2868.669310][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2868.669313][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2868.669316][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2868.669317][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2868.669319][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2868.669321][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2868.669323][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2868.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2868.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2868.670148][ C3] softirqs last disabled at (0): 0x0 | [ 2868.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 2868.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2868.670163][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:177 mm/kasan/generic.c:189) [ 2868.670169][ C3] Code: ff ff ff ff ff ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff <48> 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff All code ======== 0: ff (bad) 1: ff (bad) 2: ff (bad) 3: ff (bad) 4: ff (bad) 5: ff (bad) 6: fe 48 39 decb 0x39(%rax) 9: c7 (bad) a: 77 23 ja 0x2f c: 44 89 c2 mov %r8d,%edx f: e8 b7 e7 ff ff call 0xffffffffffffe7cb 14: 83 f0 01 xor $0x1,%eax 17: 5b pop %rbx 18: 5d pop %rbp 19: 41 5c pop %r12 1b: c3 ret 1c: cc int3 1d: cc int3 1e: cc int3 1f: cc int3 20: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 27: 7f ff ff 2a:* 48 39 c7 cmp %rax,%rdi <-- trapping instruction 2d: 76 dd jbe 0xc 2f: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 34: 48 89 fd mov %rdi,%rbp 37: 48 rex.W 38: b8 00 00 00 00 mov $0x0,%eax 3d: 00 fc add %bh,%ah 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 48 39 c7 cmp %rax,%rdi 3: 76 dd jbe 0xffffffffffffffe2 5: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 a: 48 89 fd mov %rdi,%rbp d: 48 rex.W e: b8 00 00 00 00 mov $0x0,%eax 13: 00 fc add %bh,%ah 15: ff .byte 0xff [ 2868.670173][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000282 [ 2868.670176][ C3] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2868.670178][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2868.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2868.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2868.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2868.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2868.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2868.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2868.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2868.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2868.670198][ C3] PKRU: 55555554 [ 2868.670200][ C3] Call Trace: [ 2868.670204][ C3] [ 2868.670207][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2868.670214][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2868.670218][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2868.670223][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2868.670226][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2868.670231][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2868.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2868.670239][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2868.670243][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2868.670246][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2868.670249][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2868.670252][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2868.670255][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2868.670257][ C3] ? xas_alloc (lib/xarray.c:378) [ 2868.670263][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2868.670267][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.670270][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.670274][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2868.670279][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2868.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2868.670289][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670294][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2868.670300][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2868.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2868.670312][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2868.670316][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2868.670320][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2868.670322][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2868.670328][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2868.670331][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2868.670334][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2868.670338][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2868.670343][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2868.670346][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2868.670349][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2868.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670356][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2868.670360][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2868.670365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2868.670368][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2868.670373][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2868.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670381][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2868.670386][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2868.670390][ C3] handle_softirqs (kernel/softirq.c:579) [ 2868.670396][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2868.670400][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2868.670403][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2868.670408][ C3] [ 2868.670410][ C3] [ 2868.670411][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2868.670416][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2868.670420][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2868.670423][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2868.670426][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2868.670428][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2868.670430][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2868.670432][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2868.670434][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2868.670438][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2868.670444][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2868.670450][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2868.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 2868.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 2868.670461][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2868.670466][ C3] ? xas_alloc (lib/xarray.c:378) [ 2868.670468][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2868.670474][ C3] xas_alloc (lib/xarray.c:378) [ 2868.670478][ C3] xas_create (lib/xarray.c:685) [ 2868.670484][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2868.670489][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.670492][ C3] __xa_store (lib/xarray.c:1703) [ 2868.670496][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2868.670501][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.670504][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2868.670507][ C3] ? xa_store (lib/xarray.c:1734) [ 2868.670512][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2868.670516][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2868.670519][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2868.670524][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2868.670526][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2868.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670533][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2868.670536][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2868.670541][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2868.670545][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2868.670550][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2868.670554][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2868.670558][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2868.670567][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2868.670571][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2868.670576][ C3] ksys_unshare (kernel/fork.c:3121) [ 2868.670580][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2868.670584][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2868.670588][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2868.670590][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2868.670594][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2868.670600][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2868.670604][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2868.670609][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2868.670612][ C3] RIP: 0033:0x7f439756d93b [ 2868.670616][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2868.670619][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2868.670621][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2868.670623][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2868.670626][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2868.670627][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2868.670629][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2872.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2872.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2872.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2872.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2872.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2872.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2872.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2872.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2872.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2872.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2872.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2872.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2872.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2872.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2872.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2872.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2872.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2872.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2872.669172][ C2] PKRU: 55555554 [ 2872.669174][ C2] Call Trace: [ 2872.669176][ C2] [ 2872.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2872.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2872.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2872.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2872.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2872.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2872.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2872.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 2872.669209][ C2] xa_store (lib/xarray.c:1734) [ 2872.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2872.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2872.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2872.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2872.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2872.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2872.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2872.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2872.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2872.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2872.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2872.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2872.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2872.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2872.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 2872.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2872.669280][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2872.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2872.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2872.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2872.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2872.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2872.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2872.669305][ C2] RIP: 0033:0x7f439756d93b [ 2872.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2872.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2872.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2872.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2872.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2872.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2872.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2896.656139][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2896.656150][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2896.656153][ C0] softirqs last disabled at (0): 0x0 | [ 2896.656167][ C0] Tainted: [L]=SOFTLOCKUP [ 2896.656169][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2896.656172][ C0] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 2896.656180][ C0] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 2896.656183][ C0] RSP: 0018:ffffc900034c7a10 EFLAGS: 00000202 [ 2896.656187][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2896.656189][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2896.656191][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2896.656193][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2896.656195][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2896.656198][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2896.656201][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2896.656204][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2896.656206][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2896.656207][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2896.656209][ C0] PKRU: 55555554 [ 2896.656210][ C0] Call Trace: [ 2896.656215][ C0] [ 2896.656218][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2896.656229][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2896.656233][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.656238][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.656242][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2896.656250][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2896.656254][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.656257][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.656260][ C0] ? xa_store (lib/xarray.c:1734) [ 2896.656267][ C0] xa_store (lib/xarray.c:1734) [ 2896.656271][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2896.656278][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2896.656283][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.656286][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.656289][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.656296][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.656300][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2896.656308][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2896.656311][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2896.656316][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2896.656324][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2896.656328][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2896.656338][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2896.656342][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2896.656349][ C0] ksys_unshare (kernel/fork.c:3121) [ 2896.656354][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2896.656357][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2896.656362][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2896.656365][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2896.656369][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2896.656376][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2896.656380][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2896.656386][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2896.656392][ C0] RIP: 0033:0x7f439756d93b [ 2896.656396][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2896.656398][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2896.656401][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2896.656403][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2896.656406][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2896.656407][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2896.656409][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2896.669123][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2896.669128][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2896.669132][ C1] softirqs last disabled at (0): 0x0 | [ 2896.669141][ C1] Tainted: [L]=SOFTLOCKUP [ 2896.669142][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2896.669144][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2896.669149][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2896.669152][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2896.669155][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2896.669157][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2896.669159][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2896.669161][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2896.669163][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2896.669165][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2896.669168][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2896.669171][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2896.669173][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2896.669175][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2896.669177][ C1] PKRU: 55555554 [ 2896.669178][ C1] Call Trace: [ 2896.669181][ C1] [ 2896.669183][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2896.669187][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.669191][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.669194][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2896.669199][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2896.669202][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.669205][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.669208][ C1] ? xa_store (lib/xarray.c:1734) [ 2896.669214][ C1] xa_store (lib/xarray.c:1734) [ 2896.669218][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2896.669222][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2896.669227][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.669230][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.669233][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.669238][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.669241][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2896.669247][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2896.669251][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2896.669255][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2896.669260][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2896.669264][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2896.669271][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2896.669274][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2896.669279][ C1] ksys_unshare (kernel/fork.c:3121) [ 2896.669283][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2896.669287][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2896.669291][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2896.669294][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2896.669297][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2896.669303][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2896.669306][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2896.669310][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2896.669314][ C1] RIP: 0033:0x7f439756d93b [ 2896.669317][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2896.669320][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2896.669323][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2896.669325][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2896.669327][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2896.669329][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2896.669331][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2896.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2896.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2896.670147][ C3] softirqs last disabled at (0): 0x0 | [ 2896.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 2896.670161][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2896.670164][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2896.670172][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2896.670176][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2896.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2896.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2896.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2896.670186][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2896.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2896.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2896.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2896.670197][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2896.670199][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2896.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2896.670202][ C3] PKRU: 55555554 [ 2896.670203][ C3] Call Trace: [ 2896.670208][ C3] [ 2896.670210][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2896.670215][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2896.670221][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2896.670224][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2896.670229][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2896.670233][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2896.670236][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2896.670241][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2896.670244][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2896.670248][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2896.670250][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2896.670253][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2896.670256][ C3] ? xas_alloc (lib/xarray.c:378) [ 2896.670261][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2896.670266][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.670269][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.670273][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2896.670278][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2896.670282][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2896.670287][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670292][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2896.670299][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2896.670304][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670307][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2896.670310][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2896.670314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2896.670317][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2896.670320][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2896.670327][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2896.670330][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2896.670333][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2896.670338][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2896.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2896.670346][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2896.670349][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2896.670352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670356][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2896.670360][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2896.670365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2896.670367][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2896.670373][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2896.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670381][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2896.670386][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2896.670390][ C3] handle_softirqs (kernel/softirq.c:579) [ 2896.670397][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2896.670401][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2896.670404][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2896.670409][ C3] [ 2896.670410][ C3] [ 2896.670411][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2896.670417][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2896.670420][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2896.670423][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2896.670426][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2896.670428][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2896.670430][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2896.670432][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2896.670435][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2896.670438][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2896.670444][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2896.670450][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2896.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 2896.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 2896.670461][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2896.670466][ C3] ? xas_alloc (lib/xarray.c:378) [ 2896.670468][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2896.670474][ C3] xas_alloc (lib/xarray.c:378) [ 2896.670479][ C3] xas_create (lib/xarray.c:685) [ 2896.670485][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2896.670490][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.670494][ C3] __xa_store (lib/xarray.c:1703) [ 2896.670498][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2896.670503][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.670505][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2896.670508][ C3] ? xa_store (lib/xarray.c:1734) [ 2896.670513][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2896.670517][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2896.670521][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2896.670526][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2896.670529][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2896.670532][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670536][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2896.670540][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2896.670545][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2896.670549][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2896.670554][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2896.670558][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2896.670562][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2896.670571][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2896.670575][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2896.670580][ C3] ksys_unshare (kernel/fork.c:3121) [ 2896.670584][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2896.670587][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2896.670591][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2896.670594][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2896.670597][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2896.670603][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2896.670607][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2896.670612][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2896.670616][ C3] RIP: 0033:0x7f439756d93b [ 2896.670621][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2896.670623][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2896.670627][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2896.670629][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2896.670631][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2896.670632][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2896.670634][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2900.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2900.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2900.669130][ C2] softirqs last disabled at (0): 0x0 | [ 2900.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2900.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2900.669142][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2900.669147][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 2900.669150][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2900.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2900.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2900.669157][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2900.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2900.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2900.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2900.669166][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2900.669169][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2900.669171][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2900.669173][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2900.669175][ C2] PKRU: 55555554 [ 2900.669176][ C2] Call Trace: [ 2900.669178][ C2] [ 2900.669180][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2900.669184][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2900.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2900.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2900.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2900.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2900.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2900.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 2900.669210][ C2] xa_store (lib/xarray.c:1734) [ 2900.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2900.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2900.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2900.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2900.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2900.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2900.669237][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2900.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2900.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2900.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2900.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2900.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2900.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2900.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2900.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 2900.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2900.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2900.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2900.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2900.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2900.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2900.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2900.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2900.669307][ C2] RIP: 0033:0x7f439756d93b [ 2900.669312][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2900.669315][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2900.669318][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2900.669320][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2900.669322][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2900.669324][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2900.669325][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2920.409556][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2920.409844][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2920.410083][ C1] NMI backtrace for cpu 1 | [ 2920.410094][ C1] Tainted: [L]=SOFTLOCKUP [ 2920.410095][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2920.410097][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2920.410102][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2920.410105][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2920.410108][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2920.410110][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2920.410112][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2920.410114][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2920.410116][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2920.410118][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2920.410121][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2920.410124][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2920.410125][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2920.410127][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2920.410128][ C1] PKRU: 55555554 [ 2920.410129][ C1] Call Trace: [ 2920.410131][ C1] [ 2920.410133][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2920.410136][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2920.410140][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2920.410143][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2920.410148][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2920.410151][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2920.410154][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2920.410156][ C1] ? xa_store (lib/xarray.c:1734) [ 2920.410161][ C1] xa_store (lib/xarray.c:1734) [ 2920.410165][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2920.410168][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2920.410172][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2920.410175][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2920.410178][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.410182][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.410186][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2920.410191][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2920.410195][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2920.410199][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2920.410203][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2920.410207][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2920.410214][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2920.410217][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2920.410222][ C1] ksys_unshare (kernel/fork.c:3121) [ 2920.410226][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2920.410230][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2920.410234][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2920.410236][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2920.410240][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2920.410245][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2920.410249][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2920.410253][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2920.410256][ C1] RIP: 0033:0x7f439756d93b [ 2920.410260][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2920.410262][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2920.410265][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2920.410267][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2920.410268][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2920.410270][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2920.410272][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2920.410270][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2920.410272][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2920.410278][ C1] | [ 2920.411088][ C3] Tainted: [L]=SOFTLOCKUP [ 2920.411090][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2920.411092][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2920.411097][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2920.411100][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2920.411104][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2920.411106][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2920.411108][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2920.411110][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2920.411112][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2920.411115][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2920.411118][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2920.411122][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2920.411125][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2920.411126][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2920.411128][ C3] PKRU: 55555554 [ 2920.411129][ C3] Call Trace: [ 2920.411131][ C3] [ 2920.411132][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2920.411137][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2920.411141][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2920.411144][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2920.411147][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2920.411152][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2920.411155][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2920.411159][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2920.411162][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2920.411165][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2920.411167][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2920.411170][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2920.411173][ C3] ? xas_alloc (lib/xarray.c:378) [ 2920.411179][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2920.411182][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2920.411185][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2920.411188][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2920.411193][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2920.411197][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2920.411202][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411206][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2920.411212][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2920.411217][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411219][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2920.411222][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2920.411226][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2920.411229][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2920.411232][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2920.411237][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2920.411241][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2920.411244][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2920.411248][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2920.411252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2920.411255][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2920.411258][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2920.411262][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411265][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2920.411269][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2920.411273][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2920.411276][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2920.411281][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2920.411285][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411289][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2920.411293][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2920.411297][ C3] handle_softirqs (kernel/softirq.c:579) [ 2920.411303][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2920.411306][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2920.411309][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2920.411313][ C3] [ 2920.411314][ C3] [ 2920.411315][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2920.411319][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2920.411322][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2920.411325][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2920.411327][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2920.411329][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2920.411331][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2920.411332][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2920.411334][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2920.411338][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2920.411344][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2920.411349][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2920.411352][ C3] ? xas_alloc (lib/xarray.c:378) [ 2920.411357][ C3] ? xas_alloc (lib/xarray.c:378) [ 2920.411360][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2920.411363][ C3] ? xas_alloc (lib/xarray.c:378) [ 2920.411366][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2920.411371][ C3] xas_alloc (lib/xarray.c:378) [ 2920.411375][ C3] xas_create (lib/xarray.c:685) [ 2920.411381][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2920.411385][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2920.411389][ C3] __xa_store (lib/xarray.c:1703) [ 2920.411393][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2920.411397][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2920.411400][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2920.411403][ C3] ? xa_store (lib/xarray.c:1734) [ 2920.411408][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2920.411411][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2920.411414][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2920.411419][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2920.411422][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2920.411424][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411428][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2920.411432][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2920.411436][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2920.411440][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2920.411444][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2920.411448][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2920.411452][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2920.411459][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2920.411463][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2920.411468][ C3] ksys_unshare (kernel/fork.c:3121) [ 2920.411473][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2920.411477][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2920.411480][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2920.411483][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2920.411486][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2920.411493][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2920.411497][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2920.411501][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2920.411504][ C3] RIP: 0033:0x7f439756d93b [ 2920.411508][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2920.411511][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2920.411514][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2920.411515][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2920.411517][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2920.411519][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2920.411521][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2924.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2924.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2924.656128][ C0] softirqs last disabled at (0): 0x0 | [ 2924.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 2924.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2924.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2924.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2924.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2924.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2924.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2924.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2924.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2924.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2924.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2924.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2924.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2924.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2924.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2924.656172][ C0] PKRU: 55555554 [ 2924.656173][ C0] Call Trace: [ 2924.656175][ C0] [ 2924.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2924.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2924.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2924.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2924.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2924.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2924.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2924.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 2924.656205][ C0] xa_store (lib/xarray.c:1734) [ 2924.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2924.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2924.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2924.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2924.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2924.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2924.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2924.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2924.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2924.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2924.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2924.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2924.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2924.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2924.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 2924.656271][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2924.656274][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2924.656278][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2924.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2924.656285][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2924.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2924.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2924.656298][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2924.656302][ C0] RIP: 0033:0x7f439756d93b [ 2924.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2924.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2924.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2924.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2924.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2924.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2924.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2928.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2928.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2928.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2928.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 2928.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2928.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2928.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2928.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2928.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2928.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2928.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2928.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2928.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2928.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2928.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2928.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2928.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2928.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2928.669172][ C2] PKRU: 55555554 [ 2928.669174][ C2] Call Trace: [ 2928.669176][ C2] [ 2928.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2928.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2928.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2928.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2928.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2928.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2928.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2928.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 2928.669210][ C2] xa_store (lib/xarray.c:1734) [ 2928.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2928.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2928.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2928.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2928.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2928.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2928.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2928.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2928.669245][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2928.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2928.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2928.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2928.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2928.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2928.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 2928.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2928.669280][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2928.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2928.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2928.669291][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2928.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2928.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2928.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2928.669307][ C2] RIP: 0033:0x7f439756d93b [ 2928.669311][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2928.669314][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2928.669317][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2928.669319][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2928.669321][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2928.669322][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2928.669325][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2944.669125][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2944.669130][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2944.669134][ C1] softirqs last disabled at (0): 0x0 | [ 2944.669144][ C1] Tainted: [L]=SOFTLOCKUP [ 2944.669146][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2944.669148][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2944.669155][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2944.669158][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2944.669161][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2944.669163][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2944.669165][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2944.669167][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2944.669169][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2944.669171][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2944.669173][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2944.669177][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2944.669179][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2944.669180][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2944.669182][ C1] PKRU: 55555554 [ 2944.669183][ C1] Call Trace: [ 2944.669186][ C1] [ 2944.669189][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2944.669192][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2944.669196][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2944.669199][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2944.669204][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2944.669208][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2944.669210][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2944.669213][ C1] ? xa_store (lib/xarray.c:1734) [ 2944.669218][ C1] xa_store (lib/xarray.c:1734) [ 2944.669222][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2944.669226][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2944.669231][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2944.669234][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2944.669237][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.669241][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.669244][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2944.669250][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2944.669254][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2944.669258][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2944.669263][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2944.669267][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2944.669274][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2944.669278][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2944.669282][ C1] ksys_unshare (kernel/fork.c:3121) [ 2944.669287][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2944.669290][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2944.669294][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2944.669297][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2944.669300][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2944.669306][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2944.669309][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2944.669314][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2944.669317][ C1] RIP: 0033:0x7f439756d93b [ 2944.669320][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2944.669323][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2944.669326][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2944.669328][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2944.669331][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2944.669332][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2944.669334][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2944.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2944.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2944.670148][ C3] softirqs last disabled at (0): 0x0 | [ 2944.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 2944.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2944.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2944.670173][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2944.670177][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2944.670180][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2944.670182][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2944.670184][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2944.670186][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2944.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2944.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2944.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2944.670197][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2944.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2944.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2944.670202][ C3] PKRU: 55555554 [ 2944.670203][ C3] Call Trace: [ 2944.670207][ C3] [ 2944.670209][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2944.670215][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2944.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2944.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2944.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2944.670233][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2944.670236][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2944.670240][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2944.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2944.670247][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2944.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2944.670252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2944.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 2944.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2944.670265][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2944.670268][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2944.670271][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2944.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2944.670281][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2944.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670291][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2944.670297][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2944.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670306][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2944.670309][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2944.670313][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2944.670317][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2944.670319][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2944.670326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2944.670329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2944.670332][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2944.670337][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2944.670341][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2944.670345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2944.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2944.670352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2944.670359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2944.670364][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2944.670367][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2944.670372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2944.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670380][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2944.670385][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2944.670390][ C3] handle_softirqs (kernel/softirq.c:579) [ 2944.670396][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2944.670400][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2944.670404][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2944.670408][ C3] [ 2944.670409][ C3] [ 2944.670411][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2944.670416][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2944.670419][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2944.670422][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2944.670425][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2944.670427][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2944.670429][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2944.670431][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2944.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2944.670437][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2944.670443][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2944.670449][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2944.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 2944.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 2944.670460][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2944.670465][ C3] ? xas_alloc (lib/xarray.c:378) [ 2944.670467][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2944.670473][ C3] xas_alloc (lib/xarray.c:378) [ 2944.670477][ C3] xas_create (lib/xarray.c:685) [ 2944.670484][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2944.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2944.670492][ C3] __xa_store (lib/xarray.c:1703) [ 2944.670496][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2944.670501][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2944.670504][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2944.670507][ C3] ? xa_store (lib/xarray.c:1734) [ 2944.670512][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2944.670516][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2944.670519][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2944.670524][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2944.670526][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2944.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670533][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2944.670537][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2944.670541][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2944.670545][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2944.670550][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2944.670554][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2944.670558][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2944.670566][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2944.670570][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2944.670575][ C3] ksys_unshare (kernel/fork.c:3121) [ 2944.670580][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2944.670583][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2944.670587][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2944.670590][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2944.670593][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2944.670600][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2944.670604][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2944.670609][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2944.670613][ C3] RIP: 0033:0x7f439756d93b [ 2944.670617][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2944.670620][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2944.670623][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2944.670625][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2944.670627][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2944.670629][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2944.670631][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2952.656121][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2952.656127][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2952.656130][ C0] softirqs last disabled at (0): 0x0 | [ 2952.656139][ C0] Tainted: [L]=SOFTLOCKUP [ 2952.656141][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2952.656143][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2952.656148][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2952.656151][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2952.656153][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2952.656155][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2952.656157][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2952.656159][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2952.656161][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2952.656163][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2952.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2952.656169][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2952.656171][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2952.656172][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2952.656174][ C0] PKRU: 55555554 [ 2952.656175][ C0] Call Trace: [ 2952.656177][ C0] [ 2952.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2952.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2952.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2952.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2952.656195][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2952.656198][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2952.656201][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2952.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 2952.656209][ C0] xa_store (lib/xarray.c:1734) [ 2952.656213][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2952.656216][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2952.656221][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2952.656224][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2952.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2952.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2952.656235][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2952.656240][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2952.656244][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2952.656249][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2952.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2952.656257][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2952.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2952.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2952.656271][ C0] ksys_unshare (kernel/fork.c:3121) [ 2952.656276][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2952.656279][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2952.656283][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2952.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2952.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2952.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2952.656299][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2952.656303][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2952.656306][ C0] RIP: 0033:0x7f439756d93b [ 2952.656309][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2952.656312][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2952.656315][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2952.656317][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2952.656319][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2952.656321][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2952.656323][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2956.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2956.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2956.669130][ C2] softirqs last disabled at (0): 0x0 | [ 2956.669139][ C2] Tainted: [L]=SOFTLOCKUP [ 2956.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2956.669142][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2956.669147][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2956.669150][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 2956.669153][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2956.669155][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2956.669157][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2956.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2956.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2956.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2956.669166][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2956.669169][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2956.669171][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2956.669173][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2956.669174][ C2] PKRU: 55555554 [ 2956.669176][ C2] Call Trace: [ 2956.669178][ C2] [ 2956.669180][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2956.669184][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2956.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2956.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2956.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2956.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2956.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2956.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 2956.669210][ C2] xa_store (lib/xarray.c:1734) [ 2956.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2956.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2956.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2956.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2956.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2956.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2956.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2956.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2956.669245][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2956.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2956.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2956.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2956.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2956.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2956.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 2956.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2956.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2956.669285][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2956.669288][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2956.669291][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2956.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2956.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2956.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2956.669308][ C2] RIP: 0033:0x7f439756d93b [ 2956.669311][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2956.669314][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2956.669317][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2956.669319][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2956.669321][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2956.669323][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2956.669325][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2972.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2972.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2972.669128][ C1] softirqs last disabled at (0): 0x0 | [ 2972.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 2972.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2972.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2972.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2972.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2972.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2972.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2972.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2972.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2972.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2972.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2972.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2972.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2972.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2972.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2972.669171][ C1] PKRU: 55555554 [ 2972.669172][ C1] Call Trace: [ 2972.669174][ C1] [ 2972.669176][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2972.669180][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2972.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2972.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2972.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2972.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2972.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2972.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 2972.669206][ C1] xa_store (lib/xarray.c:1734) [ 2972.669210][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2972.669213][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2972.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2972.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2972.669224][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2972.669237][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2972.669240][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2972.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2972.669249][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2972.669254][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2972.669260][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2972.669264][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2972.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 2972.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2972.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2972.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2972.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2972.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2972.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2972.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2972.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2972.669303][ C1] RIP: 0033:0x7f439756d93b [ 2972.669306][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2972.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2972.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2972.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2972.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2972.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2972.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2972.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2972.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2972.670145][ C3] softirqs last disabled at (0): 0x0 | [ 2972.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 2972.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2972.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2972.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2972.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2972.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2972.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2972.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2972.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2972.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2972.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2972.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2972.670191][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2972.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2972.670195][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2972.670197][ C3] PKRU: 55555554 [ 2972.670198][ C3] Call Trace: [ 2972.670203][ C3] [ 2972.670204][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2972.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2972.670215][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2972.670218][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2972.670222][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2972.670227][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2972.670230][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2972.670234][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2972.670237][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2972.670241][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2972.670243][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2972.670246][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2972.670248][ C3] ? xas_alloc (lib/xarray.c:378) [ 2972.670254][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2972.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2972.670261][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2972.670265][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2972.670270][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2972.670275][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2972.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670284][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2972.670290][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2972.670295][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670298][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2972.670301][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2972.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2972.670308][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2972.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2972.670317][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2972.670320][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2972.670323][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2972.670327][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2972.670331][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2972.670334][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2972.670337][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2972.670340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670344][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2972.670348][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2972.670352][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2972.670355][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2972.670360][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2972.670364][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670368][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2972.670373][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2972.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 2972.670384][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2972.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2972.670391][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2972.670395][ C3] [ 2972.670396][ C3] [ 2972.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2972.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2972.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2972.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2972.670412][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2972.670414][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2972.670416][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2972.670418][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2972.670420][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2972.670424][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2972.670430][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2972.670436][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2972.670439][ C3] ? xas_alloc (lib/xarray.c:378) [ 2972.670444][ C3] ? xas_alloc (lib/xarray.c:378) [ 2972.670447][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2972.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 2972.670453][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2972.670458][ C3] xas_alloc (lib/xarray.c:378) [ 2972.670463][ C3] xas_create (lib/xarray.c:685) [ 2972.670469][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2972.670474][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2972.670477][ C3] __xa_store (lib/xarray.c:1703) [ 2972.670482][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2972.670486][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2972.670489][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2972.670492][ C3] ? xa_store (lib/xarray.c:1734) [ 2972.670497][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2972.670501][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2972.670504][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2972.670509][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2972.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2972.670514][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2972.670522][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2972.670527][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2972.670531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2972.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2972.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2972.670544][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2972.670552][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2972.670556][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2972.670561][ C3] ksys_unshare (kernel/fork.c:3121) [ 2972.670566][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2972.670570][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2972.670573][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2972.670576][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2972.670580][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2972.670586][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2972.670589][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2972.670594][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2972.670597][ C3] RIP: 0033:0x7f439756d93b [ 2972.670602][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2972.670605][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2972.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2972.670611][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2972.670613][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2972.670615][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2972.670617][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2980.656121][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2980.656126][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2980.656130][ C0] softirqs last disabled at (0): 0x0 | [ 2980.656139][ C0] Tainted: [L]=SOFTLOCKUP [ 2980.656140][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2980.656142][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2980.656146][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2980.656150][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 2980.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2980.656154][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2980.656157][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2980.656159][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 2980.656161][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 2980.656163][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 2980.656166][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2980.656169][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 2980.656171][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2980.656173][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2980.656174][ C0] PKRU: 55555554 [ 2980.656176][ C0] Call Trace: [ 2980.656177][ C0] [ 2980.656180][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2980.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2980.656187][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2980.656191][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2980.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2980.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2980.656202][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2980.656205][ C0] ? xa_store (lib/xarray.c:1734) [ 2980.656210][ C0] xa_store (lib/xarray.c:1734) [ 2980.656214][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2980.656217][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2980.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2980.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2980.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2980.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2980.656236][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2980.656241][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2980.656245][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2980.656250][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2980.656254][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 2980.656259][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 2980.656265][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2980.656269][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 2980.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 2980.656278][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2980.656281][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2980.656285][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2980.656288][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2980.656291][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2980.656297][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 2980.656301][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2980.656305][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2980.656308][ C0] RIP: 0033:0x7f439756d93b [ 2980.656311][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2980.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2980.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2980.656318][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2980.656320][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 2980.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2980.656324][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 2984.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 2984.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 2984.669129][ C2] softirqs last disabled at (0): 0x0 | [ 2984.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 2984.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2984.669141][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 2984.669146][ C2] Code: ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd <4c> 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 All code ======== 0: ff (bad) 1: fe 48 39 decb 0x39(%rax) 4: c7 (bad) 5: 77 23 ja 0x2a 7: 44 89 c2 mov %r8d,%edx a: e8 b7 e7 ff ff call 0xffffffffffffe7c6 f: 83 f0 01 xor $0x1,%eax 12: 5b pop %rbx 13: 5d pop %rbp 14: 41 5c pop %r12 16: c3 ret 17: cc int3 18: cc int3 19: cc int3 1a: cc int3 1b: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 22: 7f ff ff 25: 48 39 c7 cmp %rax,%rdi 28: 76 dd jbe 0x7 2a:* 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 <-- trapping instruction 2f: 48 89 fd mov %rdi,%rbp 32: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 39: fc ff df 3c: 4d 89 d1 mov %r10,%r9 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 5: 48 89 fd mov %rdi,%rbp 8: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax f: fc ff df 12: 4d 89 d1 mov %r10,%r9 15: 48 rex.W [ 2984.669150][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000212 [ 2984.669152][ C2] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2984.669154][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2984.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2984.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 2984.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 2984.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 2984.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2984.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 2984.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2984.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2984.669173][ C2] PKRU: 55555554 [ 2984.669175][ C2] Call Trace: [ 2984.669176][ C2] [ 2984.669179][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 2984.669184][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2984.669187][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2984.669191][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2984.669194][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2984.669199][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2984.669202][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2984.669205][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2984.669208][ C2] ? xa_store (lib/xarray.c:1734) [ 2984.669213][ C2] xa_store (lib/xarray.c:1734) [ 2984.669217][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2984.669221][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2984.669226][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2984.669229][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2984.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2984.669236][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2984.669240][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2984.669245][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2984.669249][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2984.669253][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2984.669257][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 2984.669261][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 2984.669268][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2984.669272][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 2984.669276][ C2] ksys_unshare (kernel/fork.c:3121) [ 2984.669281][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2984.669284][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2984.669288][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2984.669290][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2984.669294][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2984.669299][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 2984.669303][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2984.669307][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2984.669310][ C2] RIP: 0033:0x7f439756d93b [ 2984.669314][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2984.669317][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2984.669320][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2984.669322][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2984.669324][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2984.669326][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2984.669328][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 2998.423835][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 2998.424270][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 2998.424515][ C1] NMI backtrace for cpu 1 | [ 2998.424526][ C1] Tainted: [L]=SOFTLOCKUP [ 2998.424527][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2998.424529][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2998.424535][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2998.424539][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 2998.424542][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2998.424544][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2998.424546][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2998.424548][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 2998.424550][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 2998.424552][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 2998.424554][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2998.424557][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 2998.424559][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2998.424561][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2998.424562][ C1] PKRU: 55555554 [ 2998.424564][ C1] Call Trace: [ 2998.424565][ C1] [ 2998.424568][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2998.424571][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2998.424575][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2998.424578][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 2998.424583][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2998.424586][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2998.424588][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2998.424591][ C1] ? xa_store (lib/xarray.c:1734) [ 2998.424596][ C1] xa_store (lib/xarray.c:1734) [ 2998.424600][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2998.424603][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2998.424608][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2998.424611][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2998.424614][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.424618][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.424621][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2998.424627][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2998.424631][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2998.424635][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2998.424639][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 2998.424643][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 2998.424649][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2998.424653][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 2998.424657][ C1] ksys_unshare (kernel/fork.c:3121) [ 2998.424662][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2998.424665][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2998.424669][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2998.424672][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2998.424675][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2998.424680][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 2998.424684][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2998.424688][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2998.424691][ C1] RIP: 0033:0x7f439756d93b [ 2998.424695][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2998.424698][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2998.424701][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2998.424703][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2998.424704][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 2998.424706][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2998.424708][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2998.424706][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 2998.424708][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 2998.424714][ C1] | [ 2998.425520][ C3] Tainted: [L]=SOFTLOCKUP [ 2998.425522][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2998.425524][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 2998.425529][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 2998.425532][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 2998.425536][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 2998.425538][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 2998.425540][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 2998.425542][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 2998.425544][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 2998.425545][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 2998.425548][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2998.425552][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 2998.425554][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2998.425556][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2998.425558][ C3] PKRU: 55555554 [ 2998.425559][ C3] Call Trace: [ 2998.425560][ C3] [ 2998.425562][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 2998.425567][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 2998.425572][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 2998.425576][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2998.425579][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2998.425583][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2998.425587][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2998.425590][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2998.425593][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 2998.425597][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2998.425599][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2998.425602][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2998.425605][ C3] ? xas_alloc (lib/xarray.c:378) [ 2998.425610][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 2998.425614][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2998.425617][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2998.425620][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2998.425626][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 2998.425630][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 2998.425635][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425639][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2998.425645][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 2998.425651][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425653][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2998.425656][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 2998.425659][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 2998.425663][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 2998.425666][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2998.425671][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2998.425674][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 2998.425678][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 2998.425682][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 2998.425686][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2998.425689][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 2998.425692][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 2998.425696][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425699][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2998.425704][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 2998.425708][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 2998.425711][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 2998.425716][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 2998.425719][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425723][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2998.425727][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 2998.425732][ C3] handle_softirqs (kernel/softirq.c:579) [ 2998.425737][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 2998.425741][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 2998.425744][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 2998.425747][ C3] [ 2998.425749][ C3] [ 2998.425750][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 2998.425754][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 2998.425757][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 2998.425760][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 2998.425763][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 2998.425764][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 2998.425766][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 2998.425768][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 2998.425769][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 2998.425773][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 2998.425779][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 2998.425784][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 2998.425787][ C3] ? xas_alloc (lib/xarray.c:378) [ 2998.425792][ C3] ? xas_alloc (lib/xarray.c:378) [ 2998.425795][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 2998.425799][ C3] ? xas_alloc (lib/xarray.c:378) [ 2998.425802][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 2998.425807][ C3] xas_alloc (lib/xarray.c:378) [ 2998.425811][ C3] xas_create (lib/xarray.c:685) [ 2998.425816][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 2998.425821][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2998.425824][ C3] __xa_store (lib/xarray.c:1703) [ 2998.425828][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 2998.425833][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2998.425836][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 2998.425839][ C3] ? xa_store (lib/xarray.c:1734) [ 2998.425843][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 2998.425847][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 2998.425850][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 2998.425855][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 2998.425858][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 2998.425860][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425864][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 2998.425868][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 2998.425872][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 2998.425876][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 2998.425881][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 2998.425884][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 2998.425888][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 2998.425895][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 2998.425898][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 2998.425903][ C3] ksys_unshare (kernel/fork.c:3121) [ 2998.425909][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 2998.425912][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 2998.425915][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 2998.425918][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 2998.425921][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 2998.425928][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 2998.425931][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 2998.425936][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 2998.425939][ C3] RIP: 0033:0x7f439756d93b [ 2998.425943][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 2998.425945][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 2998.425948][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 2998.425950][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 2998.425952][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 2998.425954][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 2998.425955][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3008.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3008.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3008.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3008.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3008.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3008.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3008.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3008.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3008.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3008.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3008.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3008.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3008.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3008.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3008.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3008.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3008.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3008.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3008.656173][ C0] PKRU: 55555554 [ 3008.656174][ C0] Call Trace: [ 3008.656175][ C0] [ 3008.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3008.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3008.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3008.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3008.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3008.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3008.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3008.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 3008.656208][ C0] xa_store (lib/xarray.c:1734) [ 3008.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3008.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3008.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3008.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3008.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3008.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3008.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3008.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3008.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3008.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3008.656252][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3008.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3008.656263][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3008.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3008.656271][ C0] ksys_unshare (kernel/fork.c:3121) [ 3008.656275][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3008.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3008.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3008.656285][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3008.656289][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3008.656294][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3008.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3008.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3008.656305][ C0] RIP: 0033:0x7f439756d93b [ 3008.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3008.656311][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3008.656314][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3008.656316][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3008.656318][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3008.656320][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3008.656322][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3012.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3012.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3012.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3012.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 3012.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3012.669142][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3012.669147][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3012.669150][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3012.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3012.669155][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3012.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3012.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3012.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3012.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3012.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3012.669169][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3012.669171][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3012.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3012.669174][ C2] PKRU: 55555554 [ 3012.669175][ C2] Call Trace: [ 3012.669177][ C2] [ 3012.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3012.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3012.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3012.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3012.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3012.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3012.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3012.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 3012.669208][ C2] xa_store (lib/xarray.c:1734) [ 3012.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3012.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3012.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3012.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3012.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3012.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3012.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3012.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3012.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3012.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3012.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3012.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3012.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3012.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3012.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 3012.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3012.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3012.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3012.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3012.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3012.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3012.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3012.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3012.669305][ C2] RIP: 0033:0x7f439756d93b [ 3012.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3012.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3012.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3012.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3012.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3012.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3012.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3024.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3024.669126][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3024.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3024.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 3024.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3024.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3024.669147][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3024.669150][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3024.669153][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3024.669155][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3024.669157][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3024.669159][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3024.669162][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3024.669163][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3024.669166][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3024.669169][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3024.669171][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3024.669173][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3024.669175][ C1] PKRU: 55555554 [ 3024.669176][ C1] Call Trace: [ 3024.669178][ C1] [ 3024.669180][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3024.669184][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3024.669188][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3024.669191][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3024.669196][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3024.669200][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3024.669203][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3024.669205][ C1] ? xa_store (lib/xarray.c:1734) [ 3024.669211][ C1] xa_store (lib/xarray.c:1734) [ 3024.669215][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3024.669218][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3024.669223][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3024.669226][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3024.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.669233][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.669236][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3024.669242][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3024.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3024.669250][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3024.669254][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3024.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3024.669265][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3024.669268][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3024.669273][ C1] ksys_unshare (kernel/fork.c:3121) [ 3024.669277][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3024.669280][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3024.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3024.669287][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3024.669291][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3024.669296][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3024.669300][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3024.669304][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3024.669307][ C1] RIP: 0033:0x7f439756d93b [ 3024.669310][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3024.669313][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3024.669316][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3024.669318][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3024.669320][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3024.669322][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3024.669324][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3024.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3024.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3024.670163][ C3] softirqs last disabled at (0): 0x0 | [ 3024.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 3024.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3024.670180][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3024.670189][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3024.670192][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3024.670195][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3024.670197][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3024.670199][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3024.670201][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3024.670203][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3024.670205][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3024.670208][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3024.670212][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3024.670214][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3024.670216][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3024.670218][ C3] PKRU: 55555554 [ 3024.670219][ C3] Call Trace: [ 3024.670223][ C3] [ 3024.670225][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3024.670230][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3024.670235][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3024.670239][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3024.670243][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3024.670248][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3024.670251][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3024.670256][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3024.670259][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3024.670263][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3024.670265][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3024.670268][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3024.670271][ C3] ? xas_alloc (lib/xarray.c:378) [ 3024.670276][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3024.670281][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3024.670284][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3024.670288][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3024.670293][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3024.670298][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3024.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670308][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3024.670314][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3024.670320][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670323][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3024.670326][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3024.670330][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3024.670333][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3024.670336][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3024.670343][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3024.670346][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3024.670349][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3024.670353][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3024.670358][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3024.670362][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3024.670365][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3024.670368][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670372][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3024.670377][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3024.670381][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3024.670384][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3024.670390][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3024.670393][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670397][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3024.670402][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3024.670406][ C3] handle_softirqs (kernel/softirq.c:579) [ 3024.670412][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3024.670416][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3024.670419][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3024.670424][ C3] [ 3024.670425][ C3] [ 3024.670427][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3024.670432][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3024.670435][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3024.670438][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3024.670441][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3024.670444][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3024.670446][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3024.670448][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3024.670449][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3024.670454][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3024.670460][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3024.670466][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3024.670469][ C3] ? xas_alloc (lib/xarray.c:378) [ 3024.670474][ C3] ? xas_alloc (lib/xarray.c:378) [ 3024.670477][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3024.670481][ C3] ? xas_alloc (lib/xarray.c:378) [ 3024.670483][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3024.670489][ C3] xas_alloc (lib/xarray.c:378) [ 3024.670493][ C3] xas_create (lib/xarray.c:685) [ 3024.670500][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3024.670504][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3024.670508][ C3] __xa_store (lib/xarray.c:1703) [ 3024.670512][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3024.670517][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3024.670520][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3024.670523][ C3] ? xa_store (lib/xarray.c:1734) [ 3024.670528][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3024.670532][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3024.670535][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3024.670540][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3024.670543][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3024.670546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670550][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3024.670554][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3024.670559][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3024.670563][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3024.670568][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3024.670572][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3024.670576][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3024.670584][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3024.670588][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3024.670594][ C3] ksys_unshare (kernel/fork.c:3121) [ 3024.670598][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3024.670602][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3024.670605][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3024.670608][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3024.670611][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3024.670618][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3024.670622][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3024.670627][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3024.670631][ C3] RIP: 0033:0x7f439756d93b [ 3024.670635][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3024.670638][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3024.670641][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3024.670643][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3024.670645][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3024.670647][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3024.670649][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3036.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3036.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3036.656129][ C0] softirqs last disabled at (0): 0x0 | [ 3036.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 3036.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3036.656142][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3036.656146][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3036.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3036.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3036.656154][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3036.656156][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3036.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3036.656160][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3036.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3036.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3036.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3036.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3036.656172][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3036.656174][ C0] PKRU: 55555554 [ 3036.656175][ C0] Call Trace: [ 3036.656177][ C0] [ 3036.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3036.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3036.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3036.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3036.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3036.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3036.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3036.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 3036.656208][ C0] xa_store (lib/xarray.c:1734) [ 3036.656212][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3036.656216][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3036.656221][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3036.656224][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3036.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3036.656231][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3036.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3036.656240][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3036.656244][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3036.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3036.656252][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3036.656257][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3036.656263][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3036.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3036.656271][ C0] ksys_unshare (kernel/fork.c:3121) [ 3036.656275][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3036.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3036.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3036.656285][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3036.656289][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3036.656294][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3036.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3036.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3036.656306][ C0] RIP: 0033:0x7f439756d93b [ 3036.656309][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3036.656312][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3036.656315][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3036.656317][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3036.656319][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3036.656321][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3036.656323][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3040.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3040.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3040.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3040.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 3040.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3040.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3040.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3040.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3040.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3040.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3040.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3040.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3040.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3040.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3040.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3040.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3040.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3040.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3040.669173][ C2] PKRU: 55555554 [ 3040.669174][ C2] Call Trace: [ 3040.669176][ C2] [ 3040.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3040.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3040.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3040.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3040.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3040.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3040.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3040.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 3040.669208][ C2] xa_store (lib/xarray.c:1734) [ 3040.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3040.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3040.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3040.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3040.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3040.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3040.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3040.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3040.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3040.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3040.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3040.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3040.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3040.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3040.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 3040.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3040.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3040.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3040.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3040.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3040.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3040.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3040.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3040.669305][ C2] RIP: 0033:0x7f439756d93b [ 3040.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3040.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3040.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3040.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3040.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3040.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3040.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3052.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3052.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3052.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3052.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3052.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3052.669140][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3052.669145][ C1] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 3052.669147][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000246 [ 3052.669150][ C1] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3052.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3052.669154][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3052.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3052.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3052.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3052.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3052.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3052.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3052.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3052.669171][ C1] PKRU: 55555554 [ 3052.669173][ C1] Call Trace: [ 3052.669174][ C1] [ 3052.669177][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3052.669182][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3052.669185][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3052.669189][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3052.669192][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3052.669198][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3052.669201][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3052.669204][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3052.669207][ C1] ? xa_store (lib/xarray.c:1734) [ 3052.669212][ C1] xa_store (lib/xarray.c:1734) [ 3052.669216][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3052.669219][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3052.669224][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3052.669227][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3052.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.669234][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.669238][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3052.669243][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3052.669247][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3052.669252][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3052.669256][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3052.669260][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3052.669266][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3052.669270][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3052.669274][ C1] ksys_unshare (kernel/fork.c:3121) [ 3052.669278][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3052.669282][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3052.669285][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3052.669288][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3052.669292][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3052.669297][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3052.669301][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3052.669305][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3052.669308][ C1] RIP: 0033:0x7f439756d93b [ 3052.669311][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3052.669313][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3052.669316][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3052.669318][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3052.669320][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3052.669322][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3052.669324][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3052.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3052.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3052.670164][ C3] softirqs last disabled at (0): 0x0 | [ 3052.670175][ C3] Tainted: [L]=SOFTLOCKUP [ 3052.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3052.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3052.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3052.670191][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3052.670194][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3052.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3052.670199][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3052.670201][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3052.670203][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3052.670205][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3052.670207][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3052.670212][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3052.670214][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3052.670216][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3052.670217][ C3] PKRU: 55555554 [ 3052.670219][ C3] Call Trace: [ 3052.670223][ C3] [ 3052.670225][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3052.670231][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3052.670237][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3052.670240][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3052.670246][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3052.670250][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3052.670254][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3052.670258][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3052.670261][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3052.670264][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3052.670268][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3052.670270][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3052.670273][ C3] ? xas_alloc (lib/xarray.c:378) [ 3052.670279][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3052.670284][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3052.670287][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3052.670291][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3052.670296][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3052.670300][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3052.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670311][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3052.670317][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3052.670323][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670326][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3052.670329][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3052.670333][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3052.670336][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3052.670339][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3052.670345][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3052.670347][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3052.670350][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3052.670355][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3052.670359][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3052.670363][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3052.670365][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3052.670369][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670373][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3052.670377][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3052.670381][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3052.670385][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3052.670390][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3052.670394][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670397][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3052.670402][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3052.670406][ C3] handle_softirqs (kernel/softirq.c:579) [ 3052.670413][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3052.670417][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3052.670420][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3052.670424][ C3] [ 3052.670425][ C3] [ 3052.670427][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3052.670432][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3052.670436][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3052.670439][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3052.670443][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3052.670445][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3052.670447][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3052.670449][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3052.670451][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3052.670455][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3052.670461][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3052.670467][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3052.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 3052.670475][ C3] ? xas_alloc (lib/xarray.c:378) [ 3052.670478][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3052.670482][ C3] ? xas_alloc (lib/xarray.c:378) [ 3052.670485][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3052.670490][ C3] xas_alloc (lib/xarray.c:378) [ 3052.670495][ C3] xas_create (lib/xarray.c:685) [ 3052.670501][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3052.670506][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3052.670509][ C3] __xa_store (lib/xarray.c:1703) [ 3052.670513][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3052.670518][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3052.670521][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3052.670524][ C3] ? xa_store (lib/xarray.c:1734) [ 3052.670529][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3052.670533][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3052.670536][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3052.670541][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3052.670544][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3052.670546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670551][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3052.670554][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3052.670559][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3052.670562][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3052.670567][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3052.670571][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3052.670576][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3052.670584][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3052.670588][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3052.670593][ C3] ksys_unshare (kernel/fork.c:3121) [ 3052.670597][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3052.670601][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3052.670604][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3052.670607][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3052.670610][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3052.670617][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3052.670621][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3052.670626][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3052.670629][ C3] RIP: 0033:0x7f439756d93b [ 3052.670634][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3052.670637][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3052.670640][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3052.670642][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3052.670644][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3052.670646][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3052.670648][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3064.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3064.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3064.656129][ C0] softirqs last disabled at (0): 0x0 | [ 3064.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3064.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3064.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3064.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3064.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3064.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3064.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3064.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3064.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3064.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3064.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3064.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3064.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3064.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3064.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3064.656172][ C0] PKRU: 55555554 [ 3064.656173][ C0] Call Trace: [ 3064.656175][ C0] [ 3064.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3064.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3064.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3064.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3064.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3064.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3064.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3064.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3064.656206][ C0] xa_store (lib/xarray.c:1734) [ 3064.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3064.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3064.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3064.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3064.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3064.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3064.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3064.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3064.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3064.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3064.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3064.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3064.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3064.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3064.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3064.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3064.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3064.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3064.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3064.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3064.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3064.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3064.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3064.656304][ C0] RIP: 0033:0x7f439756d93b [ 3064.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3064.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3064.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3064.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3064.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3064.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3064.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3068.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3068.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3068.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3068.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 3068.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3068.669141][ C2] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 3068.669146][ C2] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 3068.669149][ C2] RSP: 0018:ffffc900034d7a10 EFLAGS: 00000202 [ 3068.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3068.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3068.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3068.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3068.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3068.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3068.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3068.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3068.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3068.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3068.669173][ C2] PKRU: 55555554 [ 3068.669174][ C2] Call Trace: [ 3068.669176][ C2] [ 3068.669177][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3068.669183][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3068.669186][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3068.669191][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3068.669194][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3068.669199][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3068.669202][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3068.669204][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3068.669207][ C2] ? xa_store (lib/xarray.c:1734) [ 3068.669212][ C2] xa_store (lib/xarray.c:1734) [ 3068.669216][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3068.669220][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3068.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3068.669228][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3068.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3068.669235][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3068.669238][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3068.669244][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3068.669248][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3068.669252][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3068.669256][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3068.669260][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3068.669267][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3068.669270][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3068.669275][ C2] ksys_unshare (kernel/fork.c:3121) [ 3068.669279][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3068.669282][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3068.669286][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3068.669289][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3068.669292][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3068.669297][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3068.669301][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3068.669305][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3068.669308][ C2] RIP: 0033:0x7f439756d93b [ 3068.669311][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3068.669314][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3068.669317][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3068.669319][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3068.669321][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3068.669323][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3068.669325][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3076.437169][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3076.437605][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3076.437845][ C1] NMI backtrace for cpu 1 | [ 3076.437855][ C1] Tainted: [L]=SOFTLOCKUP [ 3076.437856][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3076.437858][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3076.437864][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3076.437867][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3076.437870][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3076.437872][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3076.437874][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3076.437877][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3076.437879][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3076.437880][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3076.437883][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3076.437886][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3076.437888][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3076.437889][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3076.437891][ C1] PKRU: 55555554 [ 3076.437893][ C1] Call Trace: [ 3076.437895][ C1] [ 3076.437897][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3076.437901][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3076.437905][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3076.437908][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3076.437913][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3076.437916][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3076.437919][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3076.437922][ C1] ? xa_store (lib/xarray.c:1734) [ 3076.437927][ C1] xa_store (lib/xarray.c:1734) [ 3076.437931][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3076.437934][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3076.437939][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3076.437942][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3076.437944][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.437949][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.437952][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3076.437957][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3076.437961][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3076.437966][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3076.437970][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3076.437974][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3076.437980][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3076.437984][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3076.437988][ C1] ksys_unshare (kernel/fork.c:3121) [ 3076.437993][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3076.437996][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3076.438000][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3076.438002][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3076.438006][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3076.438011][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3076.438015][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3076.438019][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3076.438022][ C1] RIP: 0033:0x7f439756d93b [ 3076.438025][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3076.438028][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3076.438031][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3076.438033][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3076.438035][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3076.438037][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3076.438039][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3076.438037][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3076.438039][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3076.438045][ C1] | [ 3076.438851][ C3] Tainted: [L]=SOFTLOCKUP [ 3076.438852][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3076.438854][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3076.438859][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3076.438863][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3076.438866][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3076.438868][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3076.438870][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3076.438872][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3076.438874][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3076.438876][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3076.438878][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3076.438882][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3076.438884][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3076.438886][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3076.438888][ C3] PKRU: 55555554 [ 3076.438889][ C3] Call Trace: [ 3076.438890][ C3] [ 3076.438892][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3076.438897][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3076.438901][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3076.438904][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3076.438907][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3076.438912][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3076.438915][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3076.438920][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3076.438922][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3076.438925][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3076.438928][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3076.438931][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3076.438933][ C3] ? xas_alloc (lib/xarray.c:378) [ 3076.438939][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3076.438942][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3076.438945][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3076.438948][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3076.438953][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3076.438957][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3076.438962][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.438966][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3076.438972][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3076.438977][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.438980][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3076.438983][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3076.438986][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3076.438989][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3076.438992][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3076.438998][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3076.439001][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3076.439004][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3076.439009][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3076.439013][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3076.439017][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3076.439020][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3076.439023][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.439027][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3076.439031][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3076.439035][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3076.439038][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3076.439043][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3076.439047][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.439050][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3076.439055][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3076.439059][ C3] handle_softirqs (kernel/softirq.c:579) [ 3076.439064][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3076.439067][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3076.439070][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3076.439074][ C3] [ 3076.439075][ C3] [ 3076.439076][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3076.439080][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3076.439083][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3076.439086][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3076.439088][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3076.439090][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3076.439092][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3076.439093][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3076.439095][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3076.439099][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3076.439105][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3076.439110][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3076.439114][ C3] ? xas_alloc (lib/xarray.c:378) [ 3076.439118][ C3] ? xas_alloc (lib/xarray.c:378) [ 3076.439121][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3076.439125][ C3] ? xas_alloc (lib/xarray.c:378) [ 3076.439128][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3076.439132][ C3] xas_alloc (lib/xarray.c:378) [ 3076.439137][ C3] xas_create (lib/xarray.c:685) [ 3076.439142][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3076.439147][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3076.439150][ C3] __xa_store (lib/xarray.c:1703) [ 3076.439154][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3076.439159][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3076.439161][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3076.439164][ C3] ? xa_store (lib/xarray.c:1734) [ 3076.439169][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3076.439173][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3076.439176][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3076.439181][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3076.439183][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3076.439186][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.439190][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3076.439193][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3076.439198][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3076.439202][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3076.439206][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3076.439210][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3076.439214][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3076.439220][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3076.439224][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3076.439229][ C3] ksys_unshare (kernel/fork.c:3121) [ 3076.439234][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3076.439237][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3076.439241][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3076.439243][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3076.439246][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3076.439253][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3076.439256][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3076.439261][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3076.439263][ C3] RIP: 0033:0x7f439756d93b [ 3076.439268][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3076.439270][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3076.439273][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3076.439275][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3076.439277][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3076.439278][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3076.439280][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3092.656121][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3092.656126][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3092.656130][ C0] softirqs last disabled at (0): 0x0 | [ 3092.656140][ C0] Tainted: [L]=SOFTLOCKUP [ 3092.656141][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3092.656143][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3092.656148][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3092.656151][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3092.656154][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3092.656156][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3092.656158][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3092.656160][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3092.656162][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3092.656164][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3092.656166][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3092.656169][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3092.656171][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3092.656173][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3092.656174][ C0] PKRU: 55555554 [ 3092.656176][ C0] Call Trace: [ 3092.656178][ C0] [ 3092.656181][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3092.656184][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3092.656188][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3092.656192][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3092.656197][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3092.656200][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3092.656203][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3092.656206][ C0] ? xa_store (lib/xarray.c:1734) [ 3092.656212][ C0] xa_store (lib/xarray.c:1734) [ 3092.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3092.656219][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3092.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3092.656227][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3092.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3092.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3092.656237][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3092.656243][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3092.656247][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3092.656251][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3092.656255][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3092.656260][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3092.656266][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3092.656270][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3092.656274][ C0] ksys_unshare (kernel/fork.c:3121) [ 3092.656279][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3092.656282][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3092.656286][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3092.656289][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3092.656293][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3092.656298][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3092.656302][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3092.656306][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3092.656310][ C0] RIP: 0033:0x7f439756d93b [ 3092.656313][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3092.656316][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3092.656319][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3092.656321][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3092.656323][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3092.656325][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3092.656327][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3096.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3096.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3096.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3096.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 3096.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3096.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3096.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3096.669150][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3096.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3096.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3096.669157][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3096.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3096.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3096.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3096.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3096.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3096.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3096.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3096.669173][ C2] PKRU: 55555554 [ 3096.669175][ C2] Call Trace: [ 3096.669177][ C2] [ 3096.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3096.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3096.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3096.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3096.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3096.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3096.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3096.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 3096.669209][ C2] xa_store (lib/xarray.c:1734) [ 3096.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3096.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3096.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3096.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3096.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3096.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3096.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3096.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3096.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3096.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3096.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3096.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3096.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3096.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3096.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 3096.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3096.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3096.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3096.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3096.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3096.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3096.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3096.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3096.669305][ C2] RIP: 0033:0x7f439756d93b [ 3096.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3096.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3096.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3096.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3096.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3096.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3096.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3100.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3100.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3100.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3100.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3100.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3100.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3100.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3100.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3100.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3100.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3100.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3100.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3100.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3100.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3100.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3100.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3100.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3100.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3100.669172][ C1] PKRU: 55555554 [ 3100.669174][ C1] Call Trace: [ 3100.669175][ C1] [ 3100.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3100.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3100.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3100.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3100.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3100.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3100.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3100.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 3100.669206][ C1] xa_store (lib/xarray.c:1734) [ 3100.669210][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3100.669213][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3100.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3100.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3100.669223][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3100.669236][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3100.669240][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3100.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3100.669248][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3100.669253][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3100.669259][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3100.669262][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3100.669266][ C1] ksys_unshare (kernel/fork.c:3121) [ 3100.669271][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3100.669274][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3100.669278][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3100.669281][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3100.669284][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3100.669290][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3100.669294][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3100.669298][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3100.669301][ C1] RIP: 0033:0x7f439756d93b [ 3100.669303][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3100.669307][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3100.669310][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3100.669312][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3100.669314][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3100.669316][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3100.669318][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3100.670162][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3100.670170][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3100.670174][ C3] softirqs last disabled at (0): 0x0 | [ 3100.670187][ C3] Tainted: [L]=SOFTLOCKUP [ 3100.670188][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3100.670191][ C3] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3100.670198][ C3] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3100.670201][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3100.670204][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3100.670206][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3100.670208][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3100.670210][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3100.670212][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3100.670214][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3100.670216][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3100.670220][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3100.670222][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3100.670224][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3100.670225][ C3] PKRU: 55555554 [ 3100.670227][ C3] Call Trace: [ 3100.670230][ C3] [ 3100.670232][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3100.670238][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3100.670243][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3100.670246][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3100.670251][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3100.670256][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3100.670259][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3100.670263][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3100.670266][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3100.670269][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3100.670272][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3100.670275][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3100.670278][ C3] ? xas_alloc (lib/xarray.c:378) [ 3100.670283][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3100.670288][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3100.670290][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3100.670294][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3100.670300][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3100.670304][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3100.670309][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670314][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3100.670320][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3100.670326][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670329][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3100.670332][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3100.670335][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3100.670339][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3100.670342][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3100.670349][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3100.670352][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3100.670355][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3100.670359][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3100.670363][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3100.670367][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3100.670369][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3100.670373][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670376][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3100.670381][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3100.670386][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3100.670389][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3100.670394][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3100.670398][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670402][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3100.670407][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3100.670411][ C3] handle_softirqs (kernel/softirq.c:579) [ 3100.670417][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3100.670420][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3100.670424][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3100.670428][ C3] [ 3100.670429][ C3] [ 3100.670430][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3100.670436][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3100.670439][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3100.670442][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3100.670445][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3100.670447][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3100.670449][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3100.670451][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3100.670453][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3100.670457][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3100.670463][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3100.670468][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3100.670472][ C3] ? xas_alloc (lib/xarray.c:378) [ 3100.670477][ C3] ? xas_alloc (lib/xarray.c:378) [ 3100.670480][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3100.670484][ C3] ? xas_alloc (lib/xarray.c:378) [ 3100.670487][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3100.670492][ C3] xas_alloc (lib/xarray.c:378) [ 3100.670497][ C3] xas_create (lib/xarray.c:685) [ 3100.670503][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3100.670508][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3100.670512][ C3] __xa_store (lib/xarray.c:1703) [ 3100.670516][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3100.670520][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3100.670523][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3100.670526][ C3] ? xa_store (lib/xarray.c:1734) [ 3100.670531][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3100.670535][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3100.670538][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3100.670543][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3100.670546][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3100.670549][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670553][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3100.670556][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3100.670561][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3100.670564][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3100.670569][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3100.670573][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3100.670578][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3100.670586][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3100.670590][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3100.670595][ C3] ksys_unshare (kernel/fork.c:3121) [ 3100.670599][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3100.670602][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3100.670606][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3100.670608][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3100.670612][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3100.670618][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3100.670622][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3100.670626][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3100.670630][ C3] RIP: 0033:0x7f439756d93b [ 3100.670634][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3100.670637][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3100.670639][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3100.670642][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3100.670644][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3100.670645][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3100.670647][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3120.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3120.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3120.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3120.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3120.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3120.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3120.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3120.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3120.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3120.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3120.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3120.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3120.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3120.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3120.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3120.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3120.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3120.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3120.656171][ C0] PKRU: 55555554 [ 3120.656172][ C0] Call Trace: [ 3120.656174][ C0] [ 3120.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3120.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3120.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3120.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3120.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3120.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3120.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3120.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 3120.656205][ C0] xa_store (lib/xarray.c:1734) [ 3120.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3120.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3120.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3120.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3120.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3120.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3120.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3120.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3120.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3120.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3120.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3120.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3120.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3120.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3120.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 3120.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3120.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3120.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3120.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3120.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3120.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3120.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3120.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3120.656302][ C0] RIP: 0033:0x7f439756d93b [ 3120.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3120.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3120.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3120.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3120.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3120.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3120.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3124.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3124.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3124.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3124.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3124.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3124.669140][ C2] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 3124.669146][ C2] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 3124.669149][ C2] RSP: 0018:ffffc900034d7a10 EFLAGS: 00000202 [ 3124.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3124.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3124.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3124.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3124.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3124.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3124.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3124.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3124.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3124.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3124.669172][ C2] PKRU: 55555554 [ 3124.669174][ C2] Call Trace: [ 3124.669175][ C2] [ 3124.669177][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3124.669182][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3124.669186][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3124.669190][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3124.669193][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3124.669198][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3124.669201][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3124.669204][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3124.669207][ C2] ? xa_store (lib/xarray.c:1734) [ 3124.669212][ C2] xa_store (lib/xarray.c:1734) [ 3124.669216][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3124.669220][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3124.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3124.669227][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3124.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3124.669234][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3124.669238][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3124.669243][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3124.669247][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3124.669252][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3124.669256][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3124.669260][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3124.669267][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3124.669270][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3124.669275][ C2] ksys_unshare (kernel/fork.c:3121) [ 3124.669279][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3124.669282][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3124.669286][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3124.669289][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3124.669292][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3124.669298][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3124.669301][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3124.669306][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3124.669309][ C2] RIP: 0033:0x7f439756d93b [ 3124.669312][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3124.669315][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3124.669318][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3124.669320][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3124.669322][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3124.669324][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3124.669326][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3128.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3128.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3128.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3128.669136][ C1] Tainted: [L]=SOFTLOCKUP [ 3128.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3128.669140][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 3128.669144][ C1] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 3128.669147][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000246 [ 3128.669149][ C1] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3128.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3128.669154][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3128.669155][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3128.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3128.669159][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3128.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3128.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3128.669167][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3128.669168][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3128.669170][ C1] PKRU: 55555554 [ 3128.669171][ C1] Call Trace: [ 3128.669173][ C1] [ 3128.669175][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3128.669180][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3128.669184][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3128.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3128.669190][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3128.669195][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3128.669198][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3128.669201][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3128.669204][ C1] ? xa_store (lib/xarray.c:1734) [ 3128.669209][ C1] xa_store (lib/xarray.c:1734) [ 3128.669213][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3128.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3128.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3128.669224][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3128.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.669231][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.669235][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3128.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3128.669244][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3128.669248][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3128.669253][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3128.669257][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3128.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3128.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3128.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 3128.669275][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3128.669279][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3128.669282][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3128.669285][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3128.669289][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3128.669294][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3128.669298][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3128.669302][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3128.669305][ C1] RIP: 0033:0x7f439756d93b [ 3128.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3128.669311][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3128.669314][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3128.669316][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3128.669318][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3128.669320][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3128.669322][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3128.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3128.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3128.670163][ C3] softirqs last disabled at (0): 0x0 | [ 3128.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 3128.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3128.670180][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3128.670188][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3128.670191][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3128.670194][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3128.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3128.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3128.670200][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3128.670202][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3128.670204][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3128.670206][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3128.670210][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3128.670212][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3128.670214][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3128.670215][ C3] PKRU: 55555554 [ 3128.670217][ C3] Call Trace: [ 3128.670220][ C3] [ 3128.670222][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3128.670228][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3128.670233][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3128.670236][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3128.670241][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3128.670246][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3128.670249][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3128.670253][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3128.670257][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3128.670260][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3128.670262][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3128.670265][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3128.670268][ C3] ? xas_alloc (lib/xarray.c:378) [ 3128.670273][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3128.670278][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3128.670281][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3128.670285][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3128.670290][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3128.670294][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3128.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670305][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3128.670311][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3128.670316][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670319][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3128.670323][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3128.670326][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3128.670329][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3128.670332][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3128.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3128.670341][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3128.670344][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3128.670348][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3128.670352][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3128.670356][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3128.670359][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3128.670362][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670365][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3128.670370][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3128.670374][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3128.670377][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3128.670383][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3128.670387][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670390][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3128.670395][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3128.670400][ C3] handle_softirqs (kernel/softirq.c:579) [ 3128.670406][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3128.670410][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3128.670413][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3128.670417][ C3] [ 3128.670418][ C3] [ 3128.670420][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3128.670424][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3128.670428][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3128.670430][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3128.670433][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3128.670435][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3128.670437][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3128.670440][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3128.670442][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3128.670446][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3128.670451][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3128.670457][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3128.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 3128.670465][ C3] ? xas_alloc (lib/xarray.c:378) [ 3128.670468][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3128.670472][ C3] ? xas_alloc (lib/xarray.c:378) [ 3128.670475][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3128.670480][ C3] xas_alloc (lib/xarray.c:378) [ 3128.670485][ C3] xas_create (lib/xarray.c:685) [ 3128.670491][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3128.670496][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3128.670499][ C3] __xa_store (lib/xarray.c:1703) [ 3128.670504][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3128.670508][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3128.670511][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3128.670514][ C3] ? xa_store (lib/xarray.c:1734) [ 3128.670519][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3128.670523][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3128.670526][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3128.670531][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3128.670533][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3128.670536][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670541][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3128.670544][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3128.670549][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3128.670553][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3128.670558][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3128.670562][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3128.670566][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3128.670574][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3128.670578][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3128.670584][ C3] ksys_unshare (kernel/fork.c:3121) [ 3128.670588][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3128.670592][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3128.670595][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3128.670598][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3128.670601][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3128.670607][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3128.670611][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3128.670616][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3128.670620][ C3] RIP: 0033:0x7f439756d93b [ 3128.670624][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3128.670627][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3128.670630][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3128.670632][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3128.670634][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3128.670636][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3128.670638][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3148.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3148.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3148.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3148.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3148.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3148.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3148.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3148.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3148.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3148.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3148.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3148.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3148.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3148.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3148.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3148.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3148.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3148.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3148.656172][ C0] PKRU: 55555554 [ 3148.656173][ C0] Call Trace: [ 3148.656175][ C0] [ 3148.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3148.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3148.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3148.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3148.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3148.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3148.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3148.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 3148.656207][ C0] xa_store (lib/xarray.c:1734) [ 3148.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3148.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3148.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3148.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3148.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3148.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3148.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3148.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3148.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3148.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3148.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3148.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3148.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3148.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3148.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3148.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3148.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3148.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3148.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3148.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3148.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3148.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3148.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3148.656303][ C0] RIP: 0033:0x7f439756d93b [ 3148.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3148.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3148.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3148.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3148.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3148.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3148.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3152.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3152.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3152.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3152.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3152.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3152.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:87 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3152.669144][ C2] Code: 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 48 83 c0 01 48 39 d0 74 a5 <80> 38 00 74 f2 e9 74 ff ff ff b8 01 00 00 00 e9 cb 80 38 02 48 29 All code ======== 0: 2c 48 sub $0x48,%al 2: 89 c2 mov %eax,%edx 4: 48 85 c0 test %rax,%rax 7: 75 b0 jne 0xffffffffffffffb9 9: 48 89 da mov %rbx,%rdx c: 4c 89 d8 mov %r11,%rax f: 4c 29 da sub %r11,%rdx 12: e9 49 ff ff ff jmp 0xffffffffffffff60 17: 48 85 d2 test %rdx,%rdx 1a: 74 b3 je 0xffffffffffffffcf 1c: 48 01 ea add %rbp,%rdx 1f: eb 09 jmp 0x2a 21: 48 83 c0 01 add $0x1,%rax 25: 48 39 d0 cmp %rdx,%rax 28: 74 a5 je 0xffffffffffffffcf 2a:* 80 38 00 cmpb $0x0,(%rax) <-- trapping instruction 2d: 74 f2 je 0x21 2f: e9 74 ff ff ff jmp 0xffffffffffffffa8 34: b8 01 00 00 00 mov $0x1,%eax 39: e9 cb 80 38 02 jmp 0x2388109 3e: 48 rex.W 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 80 38 00 cmpb $0x0,(%rax) 3: 74 f2 je 0xfffffffffffffff7 5: e9 74 ff ff ff jmp 0xffffffffffffff7e a: b8 01 00 00 00 mov $0x1,%eax f: e9 cb 80 38 02 jmp 0x23880df 14: 48 rex.W 15: 29 .byte 0x29 [ 3152.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000286 [ 3152.669150][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3152.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3152.669154][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3152.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3152.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3152.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3152.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3152.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3152.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3152.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3152.669171][ C2] PKRU: 55555554 [ 3152.669173][ C2] Call Trace: [ 3152.669175][ C2] [ 3152.669177][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3152.669182][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3152.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3152.669189][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3152.669192][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3152.669197][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3152.669200][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3152.669203][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3152.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 3152.669211][ C2] xa_store (lib/xarray.c:1734) [ 3152.669215][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3152.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3152.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3152.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3152.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3152.669234][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3152.669237][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3152.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3152.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3152.669251][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3152.669255][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3152.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3152.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3152.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3152.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 3152.669278][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3152.669282][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3152.669285][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3152.669288][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3152.669291][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3152.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3152.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3152.669305][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3152.669308][ C2] RIP: 0033:0x7f439756d93b [ 3152.669311][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3152.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3152.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3152.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3152.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3152.669322][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3152.669324][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3154.451532][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3154.451809][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3154.452205][ C1] NMI backtrace for cpu 1 | [ 3154.452215][ C1] Tainted: [L]=SOFTLOCKUP [ 3154.452217][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3154.452218][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3154.452224][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3154.452227][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3154.452230][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3154.452232][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3154.452234][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3154.452236][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3154.452238][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3154.452240][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3154.452243][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3154.452246][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3154.452248][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3154.452249][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3154.452251][ C1] PKRU: 55555554 [ 3154.452252][ C1] Call Trace: [ 3154.452254][ C1] [ 3154.452256][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3154.452260][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3154.452263][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3154.452266][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3154.452271][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3154.452274][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3154.452277][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3154.452280][ C1] ? xa_store (lib/xarray.c:1734) [ 3154.452285][ C1] xa_store (lib/xarray.c:1734) [ 3154.452289][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3154.452292][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3154.452297][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3154.452300][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3154.452303][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.452307][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.452310][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3154.452315][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3154.452319][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3154.452324][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3154.452328][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3154.452332][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3154.452338][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3154.452342][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3154.452346][ C1] ksys_unshare (kernel/fork.c:3121) [ 3154.452350][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3154.452354][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3154.452358][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3154.452360][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3154.452364][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3154.452369][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3154.452373][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3154.452377][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3154.452380][ C1] RIP: 0033:0x7f439756d93b [ 3154.452383][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3154.452385][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3154.452388][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3154.452390][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3154.452392][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3154.452394][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3154.452396][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3154.452394][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3154.452396][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3154.452402][ C1] | [ 3154.453211][ C3] Tainted: [L]=SOFTLOCKUP [ 3154.453212][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3154.453214][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3154.453219][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3154.453223][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3154.453226][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3154.453228][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3154.453230][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3154.453232][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3154.453234][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3154.453236][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3154.453238][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3154.453242][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3154.453245][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3154.453246][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3154.453248][ C3] PKRU: 55555554 [ 3154.453249][ C3] Call Trace: [ 3154.453251][ C3] [ 3154.453252][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3154.453257][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3154.453261][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3154.453264][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3154.453267][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3154.453272][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3154.453275][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3154.453279][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3154.453282][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3154.453285][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3154.453288][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3154.453291][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3154.453294][ C3] ? xas_alloc (lib/xarray.c:378) [ 3154.453299][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3154.453303][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3154.453306][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3154.453309][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3154.453314][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3154.453318][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3154.453323][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453327][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3154.453333][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3154.453338][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453341][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3154.453344][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3154.453347][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3154.453350][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3154.453353][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3154.453358][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3154.453361][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3154.453364][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3154.453368][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3154.453372][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3154.453376][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3154.453378][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3154.453382][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453385][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3154.453390][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3154.453394][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3154.453397][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3154.453402][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3154.453405][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453409][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3154.453414][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3154.453417][ C3] handle_softirqs (kernel/softirq.c:579) [ 3154.453423][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3154.453427][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3154.453430][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3154.453433][ C3] [ 3154.453434][ C3] [ 3154.453436][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3154.453440][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3154.453444][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3154.453446][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3154.453448][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3154.453450][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3154.453452][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3154.453454][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3154.453456][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3154.453460][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3154.453465][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3154.453470][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3154.453474][ C3] ? xas_alloc (lib/xarray.c:378) [ 3154.453478][ C3] ? xas_alloc (lib/xarray.c:378) [ 3154.453481][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3154.453485][ C3] ? xas_alloc (lib/xarray.c:378) [ 3154.453487][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3154.453492][ C3] xas_alloc (lib/xarray.c:378) [ 3154.453496][ C3] xas_create (lib/xarray.c:685) [ 3154.453502][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3154.453506][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3154.453510][ C3] __xa_store (lib/xarray.c:1703) [ 3154.453514][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3154.453518][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3154.453521][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3154.453524][ C3] ? xa_store (lib/xarray.c:1734) [ 3154.453529][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3154.453533][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3154.453536][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3154.453540][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3154.453543][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3154.453546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453550][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3154.453553][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3154.453558][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3154.453561][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3154.453566][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3154.453569][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3154.453574][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3154.453580][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3154.453583][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3154.453589][ C3] ksys_unshare (kernel/fork.c:3121) [ 3154.453594][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3154.453597][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3154.453601][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3154.453603][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3154.453607][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3154.453613][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3154.453617][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3154.453621][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3154.453624][ C3] RIP: 0033:0x7f439756d93b [ 3154.453628][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3154.453631][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3154.453634][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3154.453635][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3154.453637][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3154.453639][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3154.453640][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3176.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3176.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3176.656129][ C0] softirqs last disabled at (0): 0x0 | [ 3176.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3176.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3176.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3176.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3176.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3176.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3176.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3176.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3176.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3176.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3176.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3176.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3176.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3176.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3176.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3176.656172][ C0] PKRU: 55555554 [ 3176.656173][ C0] Call Trace: [ 3176.656174][ C0] [ 3176.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3176.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3176.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3176.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3176.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3176.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3176.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3176.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3176.656206][ C0] xa_store (lib/xarray.c:1734) [ 3176.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3176.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3176.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3176.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3176.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3176.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3176.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3176.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3176.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3176.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3176.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3176.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3176.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3176.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3176.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 3176.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3176.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3176.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3176.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3176.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3176.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3176.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3176.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3176.656304][ C0] RIP: 0033:0x7f439756d93b [ 3176.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3176.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3176.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3176.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3176.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3176.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3176.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3180.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3180.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3180.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3180.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3180.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3180.669141][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 3180.669145][ C2] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c c3 cc cc cc cc 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: c3 ret 34: cc int3 35: cc int3 36: cc int3 37: cc int3 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: c3 ret a: cc int3 b: cc int3 c: cc int3 d: cc int3 e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 3180.669148][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000246 [ 3180.669150][ C2] RAX: fffffbfff77dcb81 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3180.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3180.669155][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3180.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3180.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3180.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3180.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3180.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3180.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3180.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3180.669172][ C2] PKRU: 55555554 [ 3180.669174][ C2] Call Trace: [ 3180.669176][ C2] [ 3180.669178][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3180.669184][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3180.669187][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.669191][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.669194][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3180.669199][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3180.669202][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.669205][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.669208][ C2] ? xa_store (lib/xarray.c:1734) [ 3180.669213][ C2] xa_store (lib/xarray.c:1734) [ 3180.669217][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3180.669220][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3180.669225][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.669228][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.669235][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.669239][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3180.669244][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3180.669248][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3180.669252][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3180.669256][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3180.669260][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3180.669267][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3180.669270][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3180.669275][ C2] ksys_unshare (kernel/fork.c:3121) [ 3180.669279][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3180.669282][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3180.669286][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3180.669289][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3180.669293][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3180.669298][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3180.669302][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3180.669306][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3180.669309][ C2] RIP: 0033:0x7f439756d93b [ 3180.669312][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3180.669315][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3180.669318][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3180.669320][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3180.669322][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3180.669324][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3180.669326][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3180.669352][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3180.669357][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3180.669361][ C1] softirqs last disabled at (0): 0x0 | [ 3180.669369][ C1] Tainted: [L]=SOFTLOCKUP [ 3180.669371][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3180.669372][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3180.669377][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3180.669380][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3180.669383][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3180.669385][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3180.669387][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3180.669388][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3180.669391][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3180.669392][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3180.669395][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3180.669398][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3180.669400][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3180.669401][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3180.669403][ C1] PKRU: 55555554 [ 3180.669404][ C1] Call Trace: [ 3180.669406][ C1] [ 3180.669408][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3180.669411][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.669415][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.669418][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3180.669423][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3180.669426][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.669429][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.669432][ C1] ? xa_store (lib/xarray.c:1734) [ 3180.669437][ C1] xa_store (lib/xarray.c:1734) [ 3180.669440][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3180.669444][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3180.669449][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.669452][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.669455][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.669459][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.669463][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3180.669468][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3180.669471][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3180.669476][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3180.669480][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3180.669484][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3180.669491][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3180.669494][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3180.669499][ C1] ksys_unshare (kernel/fork.c:3121) [ 3180.669503][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3180.669506][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3180.669510][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3180.669512][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3180.669516][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3180.669521][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3180.669525][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3180.669530][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3180.669533][ C1] RIP: 0033:0x7f439756d93b [ 3180.669535][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3180.669538][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3180.669541][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3180.669543][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3180.669545][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3180.669547][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3180.669549][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3180.670153][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3180.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3180.670165][ C3] softirqs last disabled at (0): 0x0 | [ 3180.670177][ C3] Tainted: [L]=SOFTLOCKUP [ 3180.670178][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3180.670181][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3180.670188][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3180.670191][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3180.670194][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3180.670197][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3180.670199][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3180.670201][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3180.670203][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3180.670205][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3180.670208][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3180.670211][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3180.670213][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3180.670215][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3180.670216][ C3] PKRU: 55555554 [ 3180.670218][ C3] Call Trace: [ 3180.670222][ C3] [ 3180.670224][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3180.670230][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3180.670235][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3180.670238][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3180.670243][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3180.670248][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3180.670252][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3180.670256][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3180.670259][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3180.670262][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3180.670265][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3180.670268][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3180.670270][ C3] ? xas_alloc (lib/xarray.c:378) [ 3180.670276][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3180.670280][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.670283][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.670287][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3180.670293][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3180.670297][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3180.670302][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670307][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3180.670313][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3180.670318][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670321][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3180.670325][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3180.670328][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3180.670331][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3180.670334][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3180.670341][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3180.670344][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3180.670347][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3180.670352][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3180.670356][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3180.670360][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3180.670363][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3180.670367][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670370][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3180.670374][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3180.670379][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3180.670382][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3180.670388][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3180.670391][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670395][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3180.670401][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3180.670405][ C3] handle_softirqs (kernel/softirq.c:579) [ 3180.670411][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3180.670415][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3180.670418][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3180.670422][ C3] [ 3180.670423][ C3] [ 3180.670425][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3180.670430][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3180.670434][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3180.670437][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3180.670440][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3180.670442][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3180.670444][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3180.670446][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3180.670448][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3180.670452][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3180.670458][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3180.670464][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3180.670468][ C3] ? xas_alloc (lib/xarray.c:378) [ 3180.670472][ C3] ? xas_alloc (lib/xarray.c:378) [ 3180.670475][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3180.670480][ C3] ? xas_alloc (lib/xarray.c:378) [ 3180.670483][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3180.670488][ C3] xas_alloc (lib/xarray.c:378) [ 3180.670493][ C3] xas_create (lib/xarray.c:685) [ 3180.670499][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3180.670503][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.670507][ C3] __xa_store (lib/xarray.c:1703) [ 3180.670511][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3180.670516][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.670519][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3180.670522][ C3] ? xa_store (lib/xarray.c:1734) [ 3180.670527][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3180.670530][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3180.670534][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3180.670538][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3180.670542][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3180.670544][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670548][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3180.670551][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3180.670556][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3180.670560][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3180.670565][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3180.670569][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3180.670574][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3180.670582][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3180.670585][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3180.670591][ C3] ksys_unshare (kernel/fork.c:3121) [ 3180.670596][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3180.670599][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3180.670603][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3180.670605][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3180.670609][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3180.670615][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3180.670620][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3180.670624][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3180.670628][ C3] RIP: 0033:0x7f439756d93b [ 3180.670632][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3180.670634][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3180.670637][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3180.670639][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3180.670641][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3180.670643][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3180.670645][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3204.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3204.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3204.656129][ C0] softirqs last disabled at (0): 0x0 | [ 3204.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3204.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3204.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3204.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3204.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3204.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3204.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3204.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3204.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3204.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3204.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3204.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3204.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3204.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3204.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3204.656172][ C0] PKRU: 55555554 [ 3204.656173][ C0] Call Trace: [ 3204.656175][ C0] [ 3204.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3204.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3204.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3204.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3204.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3204.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3204.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3204.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 3204.656207][ C0] xa_store (lib/xarray.c:1734) [ 3204.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3204.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3204.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3204.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3204.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3204.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3204.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3204.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3204.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3204.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3204.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3204.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3204.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3204.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3204.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 3204.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3204.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3204.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3204.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3204.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3204.656294][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3204.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3204.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3204.656305][ C0] RIP: 0033:0x7f439756d93b [ 3204.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3204.656311][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3204.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3204.656316][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3204.656318][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3204.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3204.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3208.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3208.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3208.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3208.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3208.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3208.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3208.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3208.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3208.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3208.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3208.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3208.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3208.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3208.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3208.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3208.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3208.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3208.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3208.669170][ C2] PKRU: 55555554 [ 3208.669172][ C2] Call Trace: [ 3208.669174][ C2] [ 3208.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3208.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3208.669191][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3208.669194][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.669200][ C2] ? xa_store (lib/xarray.c:1734) [ 3208.669205][ C2] xa_store (lib/xarray.c:1734) [ 3208.669209][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3208.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3208.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3208.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3208.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3208.669245][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3208.669249][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3208.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3208.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3208.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3208.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3208.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3208.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3208.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3208.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3208.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3208.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3208.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3208.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3208.669302][ C2] RIP: 0033:0x7f439756d93b [ 3208.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3208.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3208.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3208.669313][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3208.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3208.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3208.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3208.669346][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3208.669351][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3208.669354][ C1] softirqs last disabled at (0): 0x0 | [ 3208.669363][ C1] Tainted: [L]=SOFTLOCKUP [ 3208.669364][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3208.669366][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3208.669370][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3208.669373][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3208.669376][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3208.669378][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3208.669380][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3208.669382][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3208.669384][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3208.669386][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3208.669388][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3208.669391][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3208.669393][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3208.669395][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3208.669397][ C1] PKRU: 55555554 [ 3208.669398][ C1] Call Trace: [ 3208.669399][ C1] [ 3208.669401][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3208.669405][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.669409][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.669412][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3208.669417][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3208.669419][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.669422][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.669425][ C1] ? xa_store (lib/xarray.c:1734) [ 3208.669430][ C1] xa_store (lib/xarray.c:1734) [ 3208.669434][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3208.669437][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3208.669443][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.669446][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.669449][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.669453][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.669457][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3208.669462][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3208.669465][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3208.669470][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3208.669475][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3208.669479][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3208.669485][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3208.669489][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3208.669493][ C1] ksys_unshare (kernel/fork.c:3121) [ 3208.669497][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3208.669501][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3208.669504][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3208.669507][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3208.669511][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3208.669516][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3208.669520][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3208.669524][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3208.669527][ C1] RIP: 0033:0x7f439756d93b [ 3208.669530][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3208.669533][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3208.669535][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3208.669538][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3208.669539][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3208.669541][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3208.669543][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3208.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3208.670161][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3208.670164][ C3] softirqs last disabled at (0): 0x0 | [ 3208.670177][ C3] Tainted: [L]=SOFTLOCKUP [ 3208.670179][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3208.670181][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 3208.670189][ C3] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 3208.670193][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000246 [ 3208.670196][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3208.670198][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3208.670200][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3208.670202][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3208.670205][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3208.670207][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3208.670209][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3208.670214][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3208.670216][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3208.670218][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3208.670219][ C3] PKRU: 55555554 [ 3208.670221][ C3] Call Trace: [ 3208.670225][ C3] [ 3208.670227][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3208.670232][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3208.670238][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3208.670241][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3208.670246][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3208.670251][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3208.670254][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3208.670258][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3208.670261][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3208.670265][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3208.670268][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3208.670270][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3208.670273][ C3] ? xas_alloc (lib/xarray.c:378) [ 3208.670278][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3208.670283][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.670286][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.670290][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3208.670296][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3208.670300][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3208.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670310][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3208.670316][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3208.670322][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670325][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3208.670329][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3208.670332][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3208.670336][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3208.670338][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3208.670345][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3208.670348][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3208.670351][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3208.670356][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3208.670360][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3208.670364][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3208.670366][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3208.670370][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670374][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3208.670378][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3208.670383][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3208.670386][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3208.670392][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3208.670396][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670399][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3208.670404][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3208.670409][ C3] handle_softirqs (kernel/softirq.c:579) [ 3208.670415][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3208.670419][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3208.670422][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3208.670426][ C3] [ 3208.670427][ C3] [ 3208.670429][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3208.670434][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3208.670438][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3208.670441][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3208.670444][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3208.670446][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3208.670447][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3208.670450][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3208.670452][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3208.670457][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3208.670462][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3208.670468][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3208.670472][ C3] ? xas_alloc (lib/xarray.c:378) [ 3208.670477][ C3] ? xas_alloc (lib/xarray.c:378) [ 3208.670480][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3208.670484][ C3] ? xas_alloc (lib/xarray.c:378) [ 3208.670487][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3208.670492][ C3] xas_alloc (lib/xarray.c:378) [ 3208.670497][ C3] xas_create (lib/xarray.c:685) [ 3208.670503][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3208.670508][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.670511][ C3] __xa_store (lib/xarray.c:1703) [ 3208.670515][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3208.670520][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.670523][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3208.670526][ C3] ? xa_store (lib/xarray.c:1734) [ 3208.670531][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3208.670535][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3208.670538][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3208.670543][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3208.670546][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3208.670549][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670553][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3208.670557][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3208.670562][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3208.670566][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3208.670571][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3208.670575][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3208.670580][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3208.670589][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3208.670592][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3208.670597][ C3] ksys_unshare (kernel/fork.c:3121) [ 3208.670602][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3208.670605][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3208.670609][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3208.670612][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3208.670615][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3208.670622][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3208.670626][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3208.670631][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3208.670634][ C3] RIP: 0033:0x7f439756d93b [ 3208.670639][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3208.670642][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3208.670645][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3208.670647][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3208.670649][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3208.670651][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3208.670653][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3232.465674][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3232.465954][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3232.466354][ C1] NMI backtrace for cpu 1 | [ 3232.466364][ C1] Tainted: [L]=SOFTLOCKUP [ 3232.466365][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3232.466367][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3232.466372][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3232.466375][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3232.466378][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3232.466380][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3232.466382][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3232.466384][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3232.466386][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3232.466388][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3232.466390][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3232.466393][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3232.466395][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3232.466396][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3232.466398][ C1] PKRU: 55555554 [ 3232.466399][ C1] Call Trace: [ 3232.466400][ C1] [ 3232.466403][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3232.466406][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.466410][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.466413][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3232.466418][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3232.466422][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.466425][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.466428][ C1] ? xa_store (lib/xarray.c:1734) [ 3232.466433][ C1] xa_store (lib/xarray.c:1734) [ 3232.466437][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3232.466440][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3232.466445][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.466448][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.466451][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.466455][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.466458][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3232.466463][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3232.466467][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3232.466472][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3232.466475][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3232.466479][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3232.466486][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3232.466489][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3232.466493][ C1] ksys_unshare (kernel/fork.c:3121) [ 3232.466498][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3232.466501][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3232.466505][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3232.466507][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3232.466511][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3232.466516][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3232.466520][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3232.466524][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3232.466527][ C1] RIP: 0033:0x7f439756d93b [ 3232.466530][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3232.466532][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3232.466535][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3232.466537][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3232.466539][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3232.466541][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3232.466542][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3232.466541][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3232.466542][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3232.466548][ C1] | [ 3232.467360][ C3] Tainted: [L]=SOFTLOCKUP [ 3232.467361][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3232.467363][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3232.467368][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3232.467372][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3232.467375][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3232.467377][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3232.467379][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3232.467381][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3232.467383][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3232.467385][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3232.467388][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3232.467392][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3232.467395][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3232.467396][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3232.467398][ C3] PKRU: 55555554 [ 3232.467399][ C3] Call Trace: [ 3232.467401][ C3] [ 3232.467402][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3232.467407][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3232.467411][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3232.467414][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3232.467418][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3232.467422][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3232.467426][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3232.467429][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3232.467432][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3232.467436][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3232.467438][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3232.467441][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3232.467444][ C3] ? xas_alloc (lib/xarray.c:378) [ 3232.467449][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3232.467453][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.467456][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.467459][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3232.467464][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3232.467468][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3232.467474][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467478][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3232.467484][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3232.467489][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467492][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3232.467495][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3232.467498][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3232.467502][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3232.467504][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3232.467510][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3232.467513][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3232.467516][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3232.467520][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3232.467524][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3232.467527][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3232.467530][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3232.467533][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467537][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3232.467541][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3232.467545][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3232.467548][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3232.467553][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3232.467557][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467561][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3232.467566][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3232.467570][ C3] handle_softirqs (kernel/softirq.c:579) [ 3232.467575][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3232.467578][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3232.467581][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3232.467585][ C3] [ 3232.467586][ C3] [ 3232.467587][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3232.467591][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3232.467594][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3232.467596][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3232.467598][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3232.467600][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3232.467602][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3232.467604][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3232.467605][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3232.467609][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3232.467615][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3232.467620][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3232.467623][ C3] ? xas_alloc (lib/xarray.c:378) [ 3232.467628][ C3] ? xas_alloc (lib/xarray.c:378) [ 3232.467631][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3232.467635][ C3] ? xas_alloc (lib/xarray.c:378) [ 3232.467637][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3232.467642][ C3] xas_alloc (lib/xarray.c:378) [ 3232.467646][ C3] xas_create (lib/xarray.c:685) [ 3232.467652][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3232.467656][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.467660][ C3] __xa_store (lib/xarray.c:1703) [ 3232.467664][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3232.467668][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.467671][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.467674][ C3] ? xa_store (lib/xarray.c:1734) [ 3232.467679][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3232.467682][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3232.467685][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3232.467690][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.467693][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.467695][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467699][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.467703][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3232.467708][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3232.467711][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3232.467716][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3232.467719][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3232.467724][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3232.467731][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3232.467735][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3232.467740][ C3] ksys_unshare (kernel/fork.c:3121) [ 3232.467745][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3232.467748][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3232.467752][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3232.467755][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3232.467758][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3232.467764][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3232.467767][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3232.467772][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3232.467775][ C3] RIP: 0033:0x7f439756d93b [ 3232.467780][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3232.467782][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3232.467785][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3232.467787][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3232.467789][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3232.467790][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3232.467792][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3232.656118][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3232.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3232.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3232.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3232.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3232.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3232.656143][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3232.656146][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3232.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3232.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3232.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3232.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3232.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3232.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3232.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3232.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3232.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3232.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3232.656170][ C0] PKRU: 55555554 [ 3232.656171][ C0] Call Trace: [ 3232.656173][ C0] [ 3232.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3232.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3232.656190][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3232.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.656196][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3232.656199][ C0] ? xa_store (lib/xarray.c:1734) [ 3232.656205][ C0] xa_store (lib/xarray.c:1734) [ 3232.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3232.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3232.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3232.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3232.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3232.656230][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3232.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3232.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3232.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3232.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3232.656252][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3232.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3232.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3232.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 3232.656271][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3232.656274][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3232.656278][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3232.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3232.656284][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3232.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3232.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3232.656298][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3232.656301][ C0] RIP: 0033:0x7f439756d93b [ 3232.656304][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3232.656307][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3232.656310][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3232.656312][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3232.656314][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3232.656316][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3232.656317][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3236.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3236.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3236.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3236.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3236.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3236.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3236.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3236.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3236.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3236.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3236.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3236.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3236.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3236.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3236.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3236.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3236.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3236.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3236.669171][ C2] PKRU: 55555554 [ 3236.669172][ C2] Call Trace: [ 3236.669174][ C2] [ 3236.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3236.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3236.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3236.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3236.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3236.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3236.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3236.669200][ C2] ? xa_store (lib/xarray.c:1734) [ 3236.669205][ C2] xa_store (lib/xarray.c:1734) [ 3236.669209][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3236.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3236.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3236.669220][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3236.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3236.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3236.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3236.669236][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3236.669240][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3236.669244][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3236.669248][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3236.669253][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3236.669259][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3236.669263][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3236.669267][ C2] ksys_unshare (kernel/fork.c:3121) [ 3236.669271][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3236.669274][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3236.669278][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3236.669281][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3236.669284][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3236.669290][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3236.669294][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3236.669298][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3236.669301][ C2] RIP: 0033:0x7f439756d93b [ 3236.669304][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3236.669306][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3236.669309][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3236.669311][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3236.669313][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3236.669315][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3236.669317][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3256.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3256.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3256.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3256.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 3256.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3256.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3256.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3256.669150][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3256.669152][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3256.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3256.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3256.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3256.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3256.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3256.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3256.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3256.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3256.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3256.669173][ C1] PKRU: 55555554 [ 3256.669174][ C1] Call Trace: [ 3256.669176][ C1] [ 3256.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3256.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3256.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3256.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3256.669195][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3256.669198][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3256.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3256.669204][ C1] ? xa_store (lib/xarray.c:1734) [ 3256.669209][ C1] xa_store (lib/xarray.c:1734) [ 3256.669213][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3256.669220][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3256.669225][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3256.669228][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3256.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.669235][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.669238][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3256.669243][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3256.669247][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3256.669252][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3256.669255][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3256.669260][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3256.669266][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3256.669270][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3256.669274][ C1] ksys_unshare (kernel/fork.c:3121) [ 3256.669279][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3256.669282][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3256.669285][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3256.669288][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3256.669292][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3256.669297][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3256.669301][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3256.669305][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3256.669308][ C1] RIP: 0033:0x7f439756d93b [ 3256.669311][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3256.669314][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3256.669317][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3256.669319][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3256.669321][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3256.669323][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3256.669325][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3256.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3256.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3256.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3256.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 3256.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3256.670165][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 3256.670170][ C3] Code: 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 <48> 01 f0 55 53 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe All code ======== 0: 0f 1f 40 00 nopl 0x0(%rax) 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 66 0f 1f 00 nopw (%rax) 18: 48 85 f6 test %rsi,%rsi 1b: 0f 84 5e 01 00 00 je 0x17f 21: 48 89 f8 mov %rdi,%rax 24: 41 54 push %r12 26: 44 0f b6 c2 movzbl %dl,%r8d 2a:* 48 01 f0 add %rsi,%rax <-- trapping instruction 2d: 55 push %rbp 2e: 53 push %rbx 2f: 72 14 jb 0x45 31: eb 26 jmp 0x59 33: cc int3 34: cc int3 35: cc int3 36: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 3d: ff ff fe Code starting with the faulting instruction =========================================== 0: 48 01 f0 add %rsi,%rax 3: 55 push %rbp 4: 53 push %rbx 5: 72 14 jb 0x1b 7: eb 26 jmp 0x2f 9: cc int3 a: cc int3 b: cc int3 c: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 13: ff ff fe [ 3256.670174][ C3] RSP: 0018:ffffc90000270a38 EFLAGS: 00000202 [ 3256.670177][ C3] RAX: ffffffffbbee5c00 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3256.670179][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3256.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3256.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3256.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3256.670187][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3256.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3256.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3256.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3256.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3256.670198][ C3] PKRU: 55555554 [ 3256.670200][ C3] Call Trace: [ 3256.670203][ C3] [ 3256.670207][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3256.670214][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3256.670219][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3256.670223][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3256.670226][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3256.670230][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3256.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3256.670238][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3256.670243][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3256.670246][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3256.670249][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3256.670252][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3256.670254][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3256.670257][ C3] ? xas_alloc (lib/xarray.c:378) [ 3256.670263][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3256.670267][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3256.670270][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3256.670274][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3256.670279][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3256.670283][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3256.670288][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670292][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3256.670299][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3256.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670308][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3256.670311][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3256.670315][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3256.670318][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3256.670321][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3256.670326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3256.670329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3256.670332][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3256.670337][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3256.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3256.670345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3256.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3256.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3256.670359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3256.670364][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3256.670366][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3256.670372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3256.670376][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670379][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3256.670384][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3256.670388][ C3] handle_softirqs (kernel/softirq.c:579) [ 3256.670394][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3256.670398][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3256.670401][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3256.670405][ C3] [ 3256.670406][ C3] [ 3256.670408][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3256.670413][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3256.670416][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3256.670419][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3256.670422][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3256.670424][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3256.670427][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3256.670428][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3256.670430][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3256.670434][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3256.670440][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3256.670446][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3256.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 3256.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 3256.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3256.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 3256.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3256.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3256.670473][ C3] xas_create (lib/xarray.c:685) [ 3256.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3256.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3256.670486][ C3] __xa_store (lib/xarray.c:1703) [ 3256.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3256.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3256.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3256.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3256.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3256.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3256.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3256.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3256.670521][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3256.670523][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3256.670531][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3256.670536][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3256.670539][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3256.670553][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3256.670559][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3256.670566][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3256.670594][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3256.670600][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3256.670606][ C3] ksys_unshare (kernel/fork.c:3121) [ 3256.670611][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3256.670614][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3256.670618][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3256.670621][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3256.670625][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3256.670631][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3256.670635][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3256.670640][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3256.670643][ C3] RIP: 0033:0x7f439756d93b [ 3256.670648][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3256.670651][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3256.670654][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3256.670657][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3256.670658][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3256.670661][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3256.670663][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3260.656118][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3260.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3260.656126][ C0] softirqs last disabled at (0): 0x0 | [ 3260.656135][ C0] Tainted: [L]=SOFTLOCKUP [ 3260.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3260.656138][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3260.656143][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3260.656145][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3260.656148][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3260.656150][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3260.656152][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3260.656153][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3260.656156][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3260.656158][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3260.656161][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3260.656164][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3260.656166][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3260.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3260.656170][ C0] PKRU: 55555554 [ 3260.656171][ C0] Call Trace: [ 3260.656172][ C0] [ 3260.656174][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3260.656178][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3260.656182][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3260.656185][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3260.656190][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3260.656193][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3260.656196][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3260.656199][ C0] ? xa_store (lib/xarray.c:1734) [ 3260.656204][ C0] xa_store (lib/xarray.c:1734) [ 3260.656208][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3260.656211][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3260.656216][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3260.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3260.656222][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3260.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3260.656229][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3260.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3260.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3260.656243][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3260.656247][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3260.656251][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3260.656257][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3260.656261][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3260.656266][ C0] ksys_unshare (kernel/fork.c:3121) [ 3260.656270][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3260.656273][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3260.656277][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3260.656280][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3260.656283][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3260.656288][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3260.656292][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3260.656296][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3260.656300][ C0] RIP: 0033:0x7f439756d93b [ 3260.656303][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3260.656305][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3260.656309][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3260.656311][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3260.656313][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3260.656314][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3260.656316][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3264.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3264.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3264.669127][ C2] softirqs last disabled at (0): 0x0 | [ 3264.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3264.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3264.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3264.669143][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3264.669146][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3264.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3264.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3264.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3264.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3264.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3264.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3264.669161][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3264.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3264.669166][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3264.669168][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3264.669170][ C2] PKRU: 55555554 [ 3264.669171][ C2] Call Trace: [ 3264.669173][ C2] [ 3264.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3264.669179][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3264.669183][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3264.669186][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3264.669191][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3264.669194][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3264.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3264.669200][ C2] ? xa_store (lib/xarray.c:1734) [ 3264.669205][ C2] xa_store (lib/xarray.c:1734) [ 3264.669209][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3264.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3264.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3264.669220][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3264.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3264.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3264.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3264.669236][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3264.669240][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3264.669244][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3264.669248][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3264.669253][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3264.669259][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3264.669263][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3264.669267][ C2] ksys_unshare (kernel/fork.c:3121) [ 3264.669271][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3264.669275][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3264.669279][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3264.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3264.669285][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3264.669290][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3264.669294][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3264.669298][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3264.669301][ C2] RIP: 0033:0x7f439756d93b [ 3264.669304][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3264.669307][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3264.669309][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3264.669312][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3264.669314][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3264.669316][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3264.669317][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3284.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3284.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3284.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3284.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3284.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3284.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3284.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3284.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3284.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3284.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3284.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3284.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3284.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3284.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3284.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3284.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3284.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3284.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3284.669172][ C1] PKRU: 55555554 [ 3284.669173][ C1] Call Trace: [ 3284.669175][ C1] [ 3284.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3284.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3284.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3284.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3284.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3284.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3284.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3284.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 3284.669207][ C1] xa_store (lib/xarray.c:1734) [ 3284.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3284.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3284.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3284.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3284.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3284.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3284.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3284.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3284.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3284.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3284.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3284.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3284.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 3284.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3284.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3284.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3284.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3284.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3284.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3284.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3284.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3284.669303][ C1] RIP: 0033:0x7f439756d93b [ 3284.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3284.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3284.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3284.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3284.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3284.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3284.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3284.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3284.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3284.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3284.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 3284.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3284.670165][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 3284.670172][ C3] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 3284.670175][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 3284.670178][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3284.670180][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3284.670182][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3284.670184][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3284.670186][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3284.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3284.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3284.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3284.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3284.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3284.670201][ C3] PKRU: 55555554 [ 3284.670202][ C3] Call Trace: [ 3284.670206][ C3] [ 3284.670208][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3284.670215][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3284.670219][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3284.670224][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3284.670227][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3284.670232][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3284.670236][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3284.670240][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3284.670244][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3284.670247][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3284.670250][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3284.670253][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3284.670256][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3284.670259][ C3] ? xas_alloc (lib/xarray.c:378) [ 3284.670264][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3284.670269][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3284.670272][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3284.670276][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3284.670281][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3284.670286][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3284.670291][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670296][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3284.670302][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3284.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3284.670314][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3284.670318][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3284.670321][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3284.670324][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3284.670329][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3284.670332][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3284.670335][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3284.670340][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3284.670345][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3284.670348][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3284.670351][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3284.670360][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670365][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3284.670373][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3284.670380][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3284.670384][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3284.670393][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3284.670400][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670406][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3284.670414][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3284.670419][ C3] handle_softirqs (kernel/softirq.c:579) [ 3284.670425][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3284.670429][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3284.670432][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3284.670436][ C3] [ 3284.670438][ C3] [ 3284.670440][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3284.670445][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3284.670449][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3284.670452][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3284.670455][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3284.670457][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3284.670459][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3284.670461][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3284.670463][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3284.670467][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3284.670473][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3284.670478][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3284.670482][ C3] ? xas_alloc (lib/xarray.c:378) [ 3284.670487][ C3] ? xas_alloc (lib/xarray.c:378) [ 3284.670490][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3284.670494][ C3] ? xas_alloc (lib/xarray.c:378) [ 3284.670497][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3284.670502][ C3] xas_alloc (lib/xarray.c:378) [ 3284.670507][ C3] xas_create (lib/xarray.c:685) [ 3284.670513][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3284.670517][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3284.670521][ C3] __xa_store (lib/xarray.c:1703) [ 3284.670525][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3284.670530][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3284.670533][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3284.670536][ C3] ? xa_store (lib/xarray.c:1734) [ 3284.670541][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3284.670545][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3284.670548][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3284.670553][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3284.670556][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3284.670558][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670562][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3284.670566][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3284.670570][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3284.670574][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3284.670579][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3284.670584][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3284.670588][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3284.670596][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3284.670600][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3284.670605][ C3] ksys_unshare (kernel/fork.c:3121) [ 3284.670610][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3284.670613][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3284.670617][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3284.670620][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3284.670624][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3284.670630][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3284.670634][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3284.670640][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3284.670643][ C3] RIP: 0033:0x7f439756d93b [ 3284.670647][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3284.670650][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3284.670653][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3284.670656][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3284.670658][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3284.670660][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3284.670662][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3288.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3288.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3288.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3288.656135][ C0] Tainted: [L]=SOFTLOCKUP [ 3288.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3288.656139][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 3288.656143][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 3288.656146][ C0] RSP: 0018:ffffc900034c7a00 EFLAGS: 00000282 [ 3288.656148][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3288.656150][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3288.656152][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3288.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3288.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3288.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3288.656161][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3288.656164][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3288.656166][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3288.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3288.656169][ C0] PKRU: 55555554 [ 3288.656171][ C0] Call Trace: [ 3288.656172][ C0] [ 3288.656174][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3288.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3288.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3288.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3288.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3288.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3288.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3288.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3288.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 3288.656208][ C0] xa_store (lib/xarray.c:1734) [ 3288.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3288.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3288.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3288.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3288.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3288.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3288.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3288.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3288.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3288.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3288.656252][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3288.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3288.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3288.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3288.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 3288.656275][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3288.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3288.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3288.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3288.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3288.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3288.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3288.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3288.656304][ C0] RIP: 0033:0x7f439756d93b [ 3288.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3288.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3288.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3288.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3288.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3288.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3288.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3292.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3292.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3292.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3292.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3292.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3292.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3292.669143][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3292.669146][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3292.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3292.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3292.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3292.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3292.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3292.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3292.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3292.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3292.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3292.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3292.669171][ C2] PKRU: 55555554 [ 3292.669172][ C2] Call Trace: [ 3292.669174][ C2] [ 3292.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3292.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3292.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3292.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3292.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3292.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3292.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3292.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 3292.669207][ C2] xa_store (lib/xarray.c:1734) [ 3292.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3292.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3292.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3292.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3292.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3292.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3292.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3292.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3292.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3292.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3292.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3292.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3292.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3292.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3292.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 3292.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3292.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3292.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3292.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3292.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3292.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3292.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3292.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3292.669303][ C2] RIP: 0033:0x7f439756d93b [ 3292.669306][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3292.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3292.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3292.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3292.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3292.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3292.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3310.478721][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3310.479004][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3310.479254][ C1] NMI backtrace for cpu 1 | [ 3310.479264][ C1] Tainted: [L]=SOFTLOCKUP [ 3310.479265][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3310.479267][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3310.479273][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3310.479276][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3310.479279][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3310.479281][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3310.479283][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3310.479285][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3310.479287][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3310.479289][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3310.479291][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3310.479294][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3310.479296][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3310.479298][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3310.479299][ C1] PKRU: 55555554 [ 3310.479301][ C1] Call Trace: [ 3310.479302][ C1] [ 3310.479305][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3310.479308][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3310.479312][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3310.479315][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3310.479320][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3310.479323][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3310.479326][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3310.479329][ C1] ? xa_store (lib/xarray.c:1734) [ 3310.479334][ C1] xa_store (lib/xarray.c:1734) [ 3310.479338][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3310.479341][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3310.479346][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3310.479349][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3310.479352][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.479356][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.479360][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3310.479365][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3310.479369][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3310.479373][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3310.479377][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3310.479381][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3310.479388][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3310.479391][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3310.479395][ C1] ksys_unshare (kernel/fork.c:3121) [ 3310.479400][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3310.479403][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3310.479407][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3310.479409][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3310.479413][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3310.479418][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3310.479423][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3310.479427][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3310.479430][ C1] RIP: 0033:0x7f439756d93b [ 3310.479433][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3310.479436][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3310.479439][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3310.479441][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3310.479443][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3310.479445][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3310.479447][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3310.479445][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3310.479447][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3310.479452][ C1] | [ 3310.480267][ C3] Tainted: [L]=SOFTLOCKUP [ 3310.480269][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3310.480272][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3310.480278][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3310.480283][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3310.480288][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3310.480291][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3310.480294][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3310.480297][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3310.480301][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3310.480304][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3310.480308][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3310.480314][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3310.480317][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3310.480319][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3310.480322][ C3] PKRU: 55555554 [ 3310.480324][ C3] Call Trace: [ 3310.480326][ C3] [ 3310.480329][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3310.480334][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3310.480339][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3310.480342][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3310.480346][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3310.480351][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3310.480354][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3310.480358][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3310.480362][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3310.480365][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3310.480368][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3310.480371][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3310.480374][ C3] ? xas_alloc (lib/xarray.c:378) [ 3310.480379][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3310.480383][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3310.480386][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3310.480389][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3310.480394][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3310.480398][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3310.480403][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480406][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3310.480413][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3310.480418][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480421][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3310.480424][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3310.480427][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3310.480431][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3310.480434][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3310.480440][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3310.480443][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3310.480446][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3310.480450][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3310.480454][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3310.480457][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3310.480460][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3310.480464][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480467][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3310.480471][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3310.480476][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3310.480478][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3310.480483][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3310.480487][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480490][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3310.480495][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3310.480499][ C3] handle_softirqs (kernel/softirq.c:579) [ 3310.480505][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3310.480508][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3310.480511][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3310.480515][ C3] [ 3310.480516][ C3] [ 3310.480518][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3310.480521][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3310.480525][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3310.480527][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3310.480530][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3310.480531][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3310.480533][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3310.480534][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3310.480536][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3310.480540][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3310.480546][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3310.480551][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3310.480554][ C3] ? xas_alloc (lib/xarray.c:378) [ 3310.480559][ C3] ? xas_alloc (lib/xarray.c:378) [ 3310.480562][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3310.480565][ C3] ? xas_alloc (lib/xarray.c:378) [ 3310.480568][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3310.480573][ C3] xas_alloc (lib/xarray.c:378) [ 3310.480577][ C3] xas_create (lib/xarray.c:685) [ 3310.480583][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3310.480587][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3310.480591][ C3] __xa_store (lib/xarray.c:1703) [ 3310.480595][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3310.480600][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3310.480602][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3310.480605][ C3] ? xa_store (lib/xarray.c:1734) [ 3310.480610][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3310.480614][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3310.480617][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3310.480622][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3310.480624][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3310.480627][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480631][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3310.480634][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3310.480639][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3310.480643][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3310.480647][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3310.480651][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3310.480655][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3310.480662][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3310.480665][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3310.480670][ C3] ksys_unshare (kernel/fork.c:3121) [ 3310.480675][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3310.480678][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3310.480682][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3310.480684][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3310.480688][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3310.480694][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3310.480697][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3310.480702][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3310.480705][ C3] RIP: 0033:0x7f439756d93b [ 3310.480709][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3310.480712][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3310.480715][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3310.480717][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3310.480718][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3310.480720][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3310.480722][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3316.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3316.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3316.656126][ C0] softirqs last disabled at (0): 0x0 | [ 3316.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3316.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3316.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3316.656143][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3316.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3316.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3316.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3316.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3316.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3316.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3316.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3316.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3316.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3316.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3316.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3316.656170][ C0] PKRU: 55555554 [ 3316.656171][ C0] Call Trace: [ 3316.656173][ C0] [ 3316.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3316.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3316.656182][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3316.656185][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3316.656190][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3316.656193][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3316.656196][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3316.656199][ C0] ? xa_store (lib/xarray.c:1734) [ 3316.656204][ C0] xa_store (lib/xarray.c:1734) [ 3316.656208][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3316.656211][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3316.656215][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3316.656218][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3316.656221][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3316.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3316.656229][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3316.656234][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3316.656238][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3316.656243][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3316.656247][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3316.656251][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3316.656258][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3316.656261][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3316.656266][ C0] ksys_unshare (kernel/fork.c:3121) [ 3316.656270][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3316.656273][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3316.656277][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3316.656280][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3316.656283][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3316.656289][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3316.656292][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3316.656296][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3316.656299][ C0] RIP: 0033:0x7f439756d93b [ 3316.656302][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3316.656305][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3316.656308][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3316.656310][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3316.656312][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3316.656314][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3316.656315][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3320.669131][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3320.669139][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3320.669142][ C2] softirqs last disabled at (0): 0x0 | [ 3320.669156][ C2] Tainted: [L]=SOFTLOCKUP [ 3320.669157][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3320.669160][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3320.669168][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3320.669171][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3320.669174][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3320.669176][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3320.669178][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3320.669180][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3320.669182][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3320.669184][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3320.669187][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3320.669191][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3320.669193][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3320.669194][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3320.669196][ C2] PKRU: 55555554 [ 3320.669197][ C2] Call Trace: [ 3320.669201][ C2] [ 3320.669205][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3320.669209][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3320.669213][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3320.669217][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3320.669223][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3320.669227][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3320.669230][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3320.669233][ C2] ? xa_store (lib/xarray.c:1734) [ 3320.669238][ C2] xa_store (lib/xarray.c:1734) [ 3320.669243][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3320.669248][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3320.669253][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3320.669256][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3320.669258][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3320.669264][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3320.669268][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3320.669275][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3320.669279][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3320.669283][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3320.669288][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3320.669292][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3320.669300][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3320.669304][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3320.669309][ C2] ksys_unshare (kernel/fork.c:3121) [ 3320.669314][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3320.669318][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3320.669322][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3320.669326][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3320.669329][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3320.669335][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3320.669339][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3320.669344][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3320.669349][ C2] RIP: 0033:0x7f439756d93b [ 3320.669353][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3320.669356][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3320.669359][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3320.669361][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3320.669363][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3320.669365][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3320.669366][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3336.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3336.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3336.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3336.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3336.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3336.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3336.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3336.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3336.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3336.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3336.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3336.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3336.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3336.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3336.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3336.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3336.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3336.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3336.669172][ C1] PKRU: 55555554 [ 3336.669173][ C1] Call Trace: [ 3336.669175][ C1] [ 3336.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3336.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3336.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3336.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3336.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3336.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3336.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3336.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 3336.669207][ C1] xa_store (lib/xarray.c:1734) [ 3336.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3336.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3336.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3336.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3336.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3336.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3336.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3336.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3336.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3336.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3336.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3336.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3336.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 3336.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3336.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3336.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3336.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3336.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3336.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3336.669297][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3336.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3336.669304][ C1] RIP: 0033:0x7f439756d93b [ 3336.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3336.669311][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3336.669314][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3336.669316][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3336.669318][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3336.669320][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3336.669322][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3336.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3336.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3336.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3336.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 3336.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3336.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3336.670172][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3336.670176][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3336.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3336.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3336.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3336.670185][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3336.670187][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3336.670189][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3336.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3336.670196][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3336.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3336.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3336.670201][ C3] PKRU: 55555554 [ 3336.670202][ C3] Call Trace: [ 3336.670206][ C3] [ 3336.670208][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3336.670213][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3336.670219][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3336.670222][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3336.670227][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3336.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3336.670235][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3336.670239][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3336.670242][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3336.670245][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3336.670248][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3336.670250][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3336.670253][ C3] ? xas_alloc (lib/xarray.c:378) [ 3336.670259][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3336.670263][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3336.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3336.670270][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3336.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3336.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3336.670285][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670290][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3336.670296][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3336.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3336.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3336.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3336.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3336.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3336.670323][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3336.670326][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3336.670329][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3336.670333][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3336.670338][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3336.670342][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3336.670344][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3336.670348][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670351][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3336.670356][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3336.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3336.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3336.670368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3336.670372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670375][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3336.670380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3336.670385][ C3] handle_softirqs (kernel/softirq.c:579) [ 3336.670391][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3336.670395][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3336.670398][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3336.670403][ C3] [ 3336.670404][ C3] [ 3336.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3336.670411][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3336.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3336.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3336.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3336.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3336.670424][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3336.670426][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3336.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3336.670432][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3336.670438][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3336.670444][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3336.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 3336.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 3336.670455][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3336.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3336.670462][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3336.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3336.670472][ C3] xas_create (lib/xarray.c:685) [ 3336.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3336.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3336.670486][ C3] __xa_store (lib/xarray.c:1703) [ 3336.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3336.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3336.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3336.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3336.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3336.670511][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3336.670514][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3336.670519][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3336.670523][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3336.670525][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3336.670533][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3336.670538][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3336.670542][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3336.670547][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3336.670551][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3336.670556][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3336.670564][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3336.670568][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3336.670573][ C3] ksys_unshare (kernel/fork.c:3121) [ 3336.670578][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3336.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3336.670585][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3336.670588][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3336.670592][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3336.670598][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3336.670602][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3336.670607][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3336.670610][ C3] RIP: 0033:0x7f439756d93b [ 3336.670615][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3336.670617][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3336.670621][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3336.670623][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3336.670625][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3336.670627][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3336.670629][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3344.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3344.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3344.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3344.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3344.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3344.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3344.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3344.656146][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3344.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3344.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3344.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3344.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3344.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3344.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3344.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3344.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3344.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3344.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3344.656170][ C0] PKRU: 55555554 [ 3344.656171][ C0] Call Trace: [ 3344.656173][ C0] [ 3344.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3344.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3344.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3344.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3344.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3344.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3344.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3344.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 3344.656205][ C0] xa_store (lib/xarray.c:1734) [ 3344.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3344.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3344.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3344.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3344.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3344.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3344.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3344.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3344.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3344.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3344.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3344.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3344.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3344.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3344.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 3344.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3344.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3344.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3344.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3344.656285][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3344.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3344.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3344.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3344.656302][ C0] RIP: 0033:0x7f439756d93b [ 3344.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3344.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3344.656310][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3344.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3344.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3344.656316][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3344.656318][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3348.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3348.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3348.669127][ C2] softirqs last disabled at (0): 0x0 | [ 3348.669135][ C2] Tainted: [L]=SOFTLOCKUP [ 3348.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3348.669138][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3348.669143][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3348.669146][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3348.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3348.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3348.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3348.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3348.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3348.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3348.669161][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3348.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3348.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3348.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3348.669170][ C2] PKRU: 55555554 [ 3348.669172][ C2] Call Trace: [ 3348.669174][ C2] [ 3348.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3348.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3348.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3348.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3348.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3348.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3348.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3348.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3348.669206][ C2] xa_store (lib/xarray.c:1734) [ 3348.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3348.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3348.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3348.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3348.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3348.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3348.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3348.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3348.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3348.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3348.669249][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3348.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3348.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3348.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3348.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3348.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3348.669275][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3348.669279][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3348.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3348.669285][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3348.669290][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3348.669294][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3348.669298][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3348.669301][ C2] RIP: 0033:0x7f439756d93b [ 3348.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3348.669307][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3348.669310][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3348.669312][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3348.669314][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3348.669316][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3348.669318][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3364.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3364.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3364.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3364.669136][ C1] Tainted: [L]=SOFTLOCKUP [ 3364.669137][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3364.669139][ C1] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3364.669144][ C1] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 3364.669147][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000212 [ 3364.669150][ C1] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3364.669152][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3364.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3364.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3364.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3364.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3364.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3364.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3364.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3364.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3364.669171][ C1] PKRU: 55555554 [ 3364.669173][ C1] Call Trace: [ 3364.669174][ C1] [ 3364.669177][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3364.669182][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3364.669185][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3364.669189][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3364.669192][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3364.669197][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3364.669200][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3364.669203][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3364.669206][ C1] ? xa_store (lib/xarray.c:1734) [ 3364.669211][ C1] xa_store (lib/xarray.c:1734) [ 3364.669215][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3364.669219][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3364.669223][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3364.669226][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3364.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.669234][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.669237][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3364.669242][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3364.669246][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3364.669251][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3364.669255][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3364.669259][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3364.669266][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3364.669269][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3364.669273][ C1] ksys_unshare (kernel/fork.c:3121) [ 3364.669278][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3364.669282][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3364.669285][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3364.669288][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3364.669292][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3364.669297][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3364.669301][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3364.669305][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3364.669308][ C1] RIP: 0033:0x7f439756d93b [ 3364.669310][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3364.669313][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3364.669316][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3364.669318][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3364.669320][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3364.669321][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3364.669323][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3364.670137][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3364.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3364.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3364.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 3364.670163][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3364.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3364.670172][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3364.670176][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3364.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3364.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3364.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3364.670185][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3364.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3364.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3364.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3364.670196][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3364.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3364.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3364.670201][ C3] PKRU: 55555554 [ 3364.670203][ C3] Call Trace: [ 3364.670208][ C3] [ 3364.670210][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3364.670216][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3364.670222][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3364.670225][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3364.670230][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3364.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3364.670238][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3364.670242][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3364.670245][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3364.670249][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3364.670252][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3364.670254][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3364.670257][ C3] ? xas_alloc (lib/xarray.c:378) [ 3364.670263][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3364.670268][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3364.670271][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3364.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3364.670280][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3364.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3364.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670295][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3364.670301][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3364.670306][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3364.670313][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3364.670316][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3364.670319][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3364.670322][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3364.670329][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3364.670332][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3364.670335][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3364.670339][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3364.670343][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3364.670347][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3364.670350][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3364.670353][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670357][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3364.670361][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3364.670366][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3364.670368][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3364.670374][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3364.670378][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670382][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3364.670386][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3364.670391][ C3] handle_softirqs (kernel/softirq.c:579) [ 3364.670397][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3364.670400][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3364.670404][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3364.670408][ C3] [ 3364.670409][ C3] [ 3364.670410][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3364.670415][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3364.670419][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3364.670421][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3364.670424][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3364.670427][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3364.670429][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3364.670431][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3364.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3364.670437][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3364.670443][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3364.670449][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3364.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 3364.670457][ C3] ? xas_alloc (lib/xarray.c:378) [ 3364.670460][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3364.670464][ C3] ? xas_alloc (lib/xarray.c:378) [ 3364.670467][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3364.670473][ C3] xas_alloc (lib/xarray.c:378) [ 3364.670477][ C3] xas_create (lib/xarray.c:685) [ 3364.670483][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3364.670488][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3364.670492][ C3] __xa_store (lib/xarray.c:1703) [ 3364.670496][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3364.670501][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3364.670504][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3364.670507][ C3] ? xa_store (lib/xarray.c:1734) [ 3364.670512][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3364.670516][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3364.670519][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3364.670525][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3364.670528][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3364.670530][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3364.670538][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3364.670543][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3364.670547][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3364.670551][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3364.670555][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3364.670560][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3364.670568][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3364.670572][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3364.670577][ C3] ksys_unshare (kernel/fork.c:3121) [ 3364.670582][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3364.670585][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3364.670590][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3364.670592][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3364.670596][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3364.670602][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3364.670606][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3364.670611][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3364.670614][ C3] RIP: 0033:0x7f439756d93b [ 3364.670618][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3364.670622][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3364.670625][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3364.670627][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3364.670629][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3364.670631][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3364.670633][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3372.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3372.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3372.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3372.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3372.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3372.656140][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3372.656144][ C0] Code: ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd <4c> 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 All code ======== 0: ff (bad) 1: fe 48 39 decb 0x39(%rax) 4: c7 (bad) 5: 77 23 ja 0x2a 7: 44 89 c2 mov %r8d,%edx a: e8 b7 e7 ff ff call 0xffffffffffffe7c6 f: 83 f0 01 xor $0x1,%eax 12: 5b pop %rbx 13: 5d pop %rbp 14: 41 5c pop %r12 16: c3 ret 17: cc int3 18: cc int3 19: cc int3 1a: cc int3 1b: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 22: 7f ff ff 25: 48 39 c7 cmp %rax,%rdi 28: 76 dd jbe 0x7 2a:* 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 <-- trapping instruction 2f: 48 89 fd mov %rdi,%rbp 32: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 39: fc ff df 3c: 4d 89 d1 mov %r10,%r9 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 5: 48 89 fd mov %rdi,%rbp 8: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax f: fc ff df 12: 4d 89 d1 mov %r10,%r9 15: 48 rex.W [ 3372.656147][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000212 [ 3372.656149][ C0] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3372.656151][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3372.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3372.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3372.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3372.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3372.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3372.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3372.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3372.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3372.656171][ C0] PKRU: 55555554 [ 3372.656172][ C0] Call Trace: [ 3372.656173][ C0] [ 3372.656176][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3372.656180][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3372.656184][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3372.656188][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3372.656191][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3372.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3372.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3372.656202][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3372.656205][ C0] ? xa_store (lib/xarray.c:1734) [ 3372.656210][ C0] xa_store (lib/xarray.c:1734) [ 3372.656214][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3372.656218][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3372.656223][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3372.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3372.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3372.656233][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3372.656236][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3372.656242][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3372.656246][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3372.656250][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3372.656254][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3372.656259][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3372.656265][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3372.656269][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3372.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 3372.656277][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3372.656281][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3372.656284][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3372.656287][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3372.656291][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3372.656296][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3372.656300][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3372.656304][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3372.656307][ C0] RIP: 0033:0x7f439756d93b [ 3372.656309][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3372.656312][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3372.656315][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3372.656317][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3372.656319][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3372.656321][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3372.656323][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3376.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3376.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3376.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3376.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3376.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3376.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3376.669144][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3376.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3376.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3376.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3376.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3376.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3376.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3376.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3376.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3376.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3376.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3376.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3376.669171][ C2] PKRU: 55555554 [ 3376.669173][ C2] Call Trace: [ 3376.669174][ C2] [ 3376.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3376.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3376.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3376.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3376.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3376.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3376.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3376.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3376.669206][ C2] xa_store (lib/xarray.c:1734) [ 3376.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3376.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3376.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3376.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3376.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3376.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3376.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3376.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3376.669240][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3376.669245][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3376.669249][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3376.669253][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3376.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3376.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3376.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3376.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3376.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3376.669279][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3376.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3376.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3376.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3376.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3376.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3376.669302][ C2] RIP: 0033:0x7f439756d93b [ 3376.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3376.669307][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3376.669310][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3376.669312][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3376.669314][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3376.669316][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3376.669318][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3388.492823][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3388.493101][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3388.493339][ C1] NMI backtrace for cpu 1 | [ 3388.493349][ C1] Tainted: [L]=SOFTLOCKUP [ 3388.493351][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3388.493353][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3388.493358][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3388.493361][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3388.493364][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3388.493367][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3388.493369][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3388.493371][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3388.493373][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3388.493375][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3388.493377][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3388.493380][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3388.493382][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3388.493383][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3388.493385][ C1] PKRU: 55555554 [ 3388.493386][ C1] Call Trace: [ 3388.493388][ C1] [ 3388.493390][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3388.493394][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3388.493398][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3388.493401][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3388.493406][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3388.493409][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3388.493411][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3388.493414][ C1] ? xa_store (lib/xarray.c:1734) [ 3388.493420][ C1] xa_store (lib/xarray.c:1734) [ 3388.493424][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3388.493428][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3388.493433][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3388.493436][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3388.493439][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.493443][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.493446][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3388.493452][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3388.493455][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3388.493460][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3388.493464][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3388.493468][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3388.493475][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3388.493479][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3388.493483][ C1] ksys_unshare (kernel/fork.c:3121) [ 3388.493487][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3388.493490][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3388.493494][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3388.493497][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3388.493500][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3388.493506][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3388.493510][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3388.493514][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3388.493517][ C1] RIP: 0033:0x7f439756d93b [ 3388.493520][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3388.493522][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3388.493525][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3388.493527][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3388.493529][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3388.493531][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3388.493533][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3388.493531][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3388.493533][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3388.493539][ C1] | [ 3388.494345][ C3] Tainted: [L]=SOFTLOCKUP [ 3388.494346][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3388.494348][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3388.494353][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3388.494356][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3388.494360][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3388.494362][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3388.494364][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3388.494366][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3388.494368][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3388.494371][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3388.494373][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3388.494378][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3388.494380][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3388.494381][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3388.494383][ C3] PKRU: 55555554 [ 3388.494384][ C3] Call Trace: [ 3388.494386][ C3] [ 3388.494387][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3388.494392][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3388.494396][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3388.494400][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3388.494403][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3388.494408][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3388.494411][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3388.494415][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3388.494418][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3388.494421][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3388.494424][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3388.494427][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3388.494430][ C3] ? xas_alloc (lib/xarray.c:378) [ 3388.494435][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3388.494438][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3388.494441][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3388.494444][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3388.494449][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3388.494453][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3388.494458][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494462][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3388.494468][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3388.494473][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494476][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3388.494479][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3388.494483][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3388.494486][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3388.494489][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3388.494495][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3388.494497][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3388.494500][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3388.494505][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3388.494509][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3388.494512][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3388.494515][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3388.494519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494522][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3388.494526][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3388.494530][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3388.494533][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3388.494538][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3388.494542][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494545][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3388.494550][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3388.494554][ C3] handle_softirqs (kernel/softirq.c:579) [ 3388.494560][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3388.494563][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3388.494566][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3388.494570][ C3] [ 3388.494571][ C3] [ 3388.494573][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3388.494577][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3388.494580][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3388.494583][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3388.494585][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3388.494587][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3388.494588][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3388.494590][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3388.494592][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3388.494596][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3388.494601][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3388.494607][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3388.494610][ C3] ? xas_alloc (lib/xarray.c:378) [ 3388.494614][ C3] ? xas_alloc (lib/xarray.c:378) [ 3388.494617][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3388.494621][ C3] ? xas_alloc (lib/xarray.c:378) [ 3388.494624][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3388.494629][ C3] xas_alloc (lib/xarray.c:378) [ 3388.494633][ C3] xas_create (lib/xarray.c:685) [ 3388.494639][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3388.494643][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3388.494646][ C3] __xa_store (lib/xarray.c:1703) [ 3388.494650][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3388.494655][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3388.494658][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3388.494661][ C3] ? xa_store (lib/xarray.c:1734) [ 3388.494665][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3388.494669][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3388.494672][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3388.494677][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3388.494680][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3388.494682][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494686][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3388.494689][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3388.494694][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3388.494698][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3388.494702][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3388.494706][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3388.494710][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3388.494717][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3388.494720][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3388.494725][ C3] ksys_unshare (kernel/fork.c:3121) [ 3388.494731][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3388.494734][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3388.494737][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3388.494740][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3388.494743][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3388.494749][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3388.494753][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3388.494758][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3388.494761][ C3] RIP: 0033:0x7f439756d93b [ 3388.494766][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3388.494768][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3388.494771][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3388.494774][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3388.494775][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3388.494777][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3388.494779][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3400.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3400.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3400.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3400.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3400.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3400.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3400.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3400.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3400.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3400.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3400.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3400.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3400.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3400.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3400.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3400.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3400.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3400.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3400.656170][ C0] PKRU: 55555554 [ 3400.656171][ C0] Call Trace: [ 3400.656173][ C0] [ 3400.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3400.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3400.656182][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3400.656185][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3400.656190][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3400.656193][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3400.656196][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3400.656199][ C0] ? xa_store (lib/xarray.c:1734) [ 3400.656204][ C0] xa_store (lib/xarray.c:1734) [ 3400.656208][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3400.656211][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3400.656216][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3400.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3400.656221][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3400.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3400.656229][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3400.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3400.656238][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3400.656243][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3400.656247][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3400.656251][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3400.656257][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3400.656261][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3400.656265][ C0] ksys_unshare (kernel/fork.c:3121) [ 3400.656269][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3400.656273][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3400.656277][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3400.656279][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3400.656283][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3400.656288][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3400.656292][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3400.656296][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3400.656299][ C0] RIP: 0033:0x7f439756d93b [ 3400.656302][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3400.656305][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3400.656308][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3400.656310][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3400.656312][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3400.656314][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3400.656316][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3404.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3404.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3404.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3404.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3404.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3404.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 3404.669144][ C2] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 3404.669147][ C2] RSP: 0018:ffffc900034d7a10 EFLAGS: 00000246 [ 3404.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3404.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3404.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3404.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3404.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3404.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3404.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3404.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3404.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3404.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3404.669171][ C2] PKRU: 55555554 [ 3404.669173][ C2] Call Trace: [ 3404.669175][ C2] [ 3404.669176][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3404.669182][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3404.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3404.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3404.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3404.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3404.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3404.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3404.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 3404.669210][ C2] xa_store (lib/xarray.c:1734) [ 3404.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3404.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3404.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3404.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3404.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3404.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3404.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3404.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3404.669245][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3404.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3404.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3404.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3404.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3404.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3404.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 3404.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3404.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3404.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3404.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3404.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3404.669295][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3404.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3404.669303][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3404.669306][ C2] RIP: 0033:0x7f439756d93b [ 3404.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3404.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3404.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3404.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3404.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3404.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3404.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3412.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3412.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3412.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3412.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3412.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3412.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3412.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3412.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3412.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3412.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3412.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3412.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3412.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3412.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3412.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3412.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3412.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3412.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3412.669171][ C1] PKRU: 55555554 [ 3412.669173][ C1] Call Trace: [ 3412.669174][ C1] [ 3412.669176][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3412.669180][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3412.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3412.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3412.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3412.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3412.669197][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3412.669200][ C1] ? xa_store (lib/xarray.c:1734) [ 3412.669205][ C1] xa_store (lib/xarray.c:1734) [ 3412.669209][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3412.669212][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3412.669216][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3412.669219][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3412.669222][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.669230][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3412.669235][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3412.669239][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3412.669244][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3412.669247][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3412.669252][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3412.669258][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3412.669262][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3412.669266][ C1] ksys_unshare (kernel/fork.c:3121) [ 3412.669270][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3412.669274][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3412.669277][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3412.669280][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3412.669283][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3412.669289][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3412.669293][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3412.669297][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3412.669300][ C1] RIP: 0033:0x7f439756d93b [ 3412.669303][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3412.669306][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3412.669309][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3412.669311][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3412.669313][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3412.669315][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3412.669317][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3412.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3412.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3412.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3412.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 3412.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3412.670165][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3412.670173][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3412.670176][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3412.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3412.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3412.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3412.670185][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3412.670187][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3412.670189][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3412.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3412.670196][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3412.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3412.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3412.670201][ C3] PKRU: 55555554 [ 3412.670203][ C3] Call Trace: [ 3412.670207][ C3] [ 3412.670209][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3412.670215][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3412.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3412.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3412.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3412.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3412.670236][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3412.670240][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3412.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3412.670247][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3412.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3412.670252][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3412.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 3412.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3412.670265][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3412.670268][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3412.670272][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3412.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3412.670281][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3412.670286][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670291][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3412.670297][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3412.670303][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670306][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3412.670309][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3412.670313][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3412.670316][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3412.670319][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3412.670325][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3412.670328][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3412.670331][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3412.670336][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3412.670341][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3412.670344][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3412.670347][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3412.670350][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670354][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3412.670358][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3412.670363][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3412.670366][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3412.670372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3412.670376][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670379][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3412.670384][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3412.670389][ C3] handle_softirqs (kernel/softirq.c:579) [ 3412.670395][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3412.670398][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3412.670402][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3412.670405][ C3] [ 3412.670407][ C3] [ 3412.670408][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3412.670414][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3412.670417][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3412.670420][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3412.670423][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3412.670425][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3412.670427][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3412.670430][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3412.670431][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3412.670435][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3412.670441][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3412.670447][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3412.670450][ C3] ? xas_alloc (lib/xarray.c:378) [ 3412.670455][ C3] ? xas_alloc (lib/xarray.c:378) [ 3412.670458][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3412.670462][ C3] ? xas_alloc (lib/xarray.c:378) [ 3412.670465][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3412.670470][ C3] xas_alloc (lib/xarray.c:378) [ 3412.670474][ C3] xas_create (lib/xarray.c:685) [ 3412.670480][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3412.670485][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3412.670488][ C3] __xa_store (lib/xarray.c:1703) [ 3412.670492][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3412.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3412.670500][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3412.670503][ C3] ? xa_store (lib/xarray.c:1734) [ 3412.670508][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3412.670512][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3412.670515][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3412.670521][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3412.670524][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3412.670527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3412.670534][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3412.670539][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3412.670543][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3412.670548][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3412.670552][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3412.670556][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3412.670564][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3412.670568][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3412.670574][ C3] ksys_unshare (kernel/fork.c:3121) [ 3412.670578][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3412.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3412.670585][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3412.670588][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3412.670591][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3412.670597][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3412.670601][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3412.670606][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3412.670610][ C3] RIP: 0033:0x7f439756d93b [ 3412.670614][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3412.670617][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3412.670620][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3412.670622][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3412.670624][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3412.670626][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3412.670628][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3428.656129][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3428.656136][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3428.656139][ C0] softirqs last disabled at (0): 0x0 | [ 3428.656151][ C0] Tainted: [L]=SOFTLOCKUP [ 3428.656152][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3428.656154][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3428.656162][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3428.656165][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3428.656168][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3428.656170][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3428.656172][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3428.656174][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3428.656176][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3428.656178][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3428.656181][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3428.656184][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3428.656186][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3428.656188][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3428.656189][ C0] PKRU: 55555554 [ 3428.656191][ C0] Call Trace: [ 3428.656195][ C0] [ 3428.656198][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3428.656202][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3428.656206][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3428.656210][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3428.656216][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3428.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3428.656222][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3428.656225][ C0] ? xa_store (lib/xarray.c:1734) [ 3428.656231][ C0] xa_store (lib/xarray.c:1734) [ 3428.656235][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3428.656240][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3428.656245][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3428.656247][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3428.656250][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3428.656255][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3428.656259][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3428.656266][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3428.656269][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3428.656274][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3428.656279][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3428.656284][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3428.656292][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3428.656296][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3428.656301][ C0] ksys_unshare (kernel/fork.c:3121) [ 3428.656306][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3428.656309][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3428.656314][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3428.656317][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3428.656320][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3428.656326][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3428.656330][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3428.656335][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3428.656339][ C0] RIP: 0033:0x7f439756d93b [ 3428.656342][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3428.656345][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3428.656348][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3428.656350][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3428.656352][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3428.656353][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3428.656355][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3432.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3432.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3432.669130][ C2] softirqs last disabled at (0): 0x0 | [ 3432.669139][ C2] Tainted: [L]=SOFTLOCKUP [ 3432.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3432.669142][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3432.669147][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3432.669150][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3432.669153][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3432.669155][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3432.669157][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3432.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3432.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3432.669163][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3432.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3432.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3432.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3432.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3432.669173][ C2] PKRU: 55555554 [ 3432.669174][ C2] Call Trace: [ 3432.669177][ C2] [ 3432.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3432.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3432.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3432.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3432.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3432.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3432.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3432.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 3432.669209][ C2] xa_store (lib/xarray.c:1734) [ 3432.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3432.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3432.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3432.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3432.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3432.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3432.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3432.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3432.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3432.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3432.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3432.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3432.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3432.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3432.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 3432.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3432.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3432.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3432.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3432.669291][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3432.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3432.669299][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3432.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3432.669307][ C2] RIP: 0033:0x7f439756d93b [ 3432.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3432.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3432.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3432.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3432.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3432.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3432.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3440.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3440.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3440.669127][ C1] softirqs last disabled at (0): 0x0 | [ 3440.669135][ C1] Tainted: [L]=SOFTLOCKUP [ 3440.669137][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3440.669139][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 3440.669143][ C1] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 3440.669146][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000282 [ 3440.669149][ C1] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3440.669151][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3440.669153][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3440.669155][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3440.669157][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3440.669159][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3440.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3440.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3440.669167][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3440.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3440.669170][ C1] PKRU: 55555554 [ 3440.669171][ C1] Call Trace: [ 3440.669173][ C1] [ 3440.669175][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3440.669180][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3440.669183][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3440.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3440.669191][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3440.669196][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3440.669199][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3440.669201][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3440.669204][ C1] ? xa_store (lib/xarray.c:1734) [ 3440.669210][ C1] xa_store (lib/xarray.c:1734) [ 3440.669214][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3440.669217][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3440.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3440.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3440.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.669232][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.669235][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3440.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3440.669244][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3440.669249][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3440.669253][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3440.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3440.669264][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3440.669268][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3440.669272][ C1] ksys_unshare (kernel/fork.c:3121) [ 3440.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3440.669280][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3440.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3440.669286][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3440.669290][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3440.669295][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3440.669299][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3440.669303][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3440.669310][ C1] RIP: 0033:0x7f439756d93b [ 3440.669313][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3440.669316][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3440.669318][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3440.669321][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3440.669323][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3440.669324][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3440.669326][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3440.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3440.670145][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3440.670149][ C3] softirqs last disabled at (0): 0x0 | [ 3440.670161][ C3] Tainted: [L]=SOFTLOCKUP [ 3440.670163][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3440.670165][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 3440.670171][ C3] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 3440.670175][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 3440.670178][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3440.670180][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3440.670182][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3440.670184][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3440.670186][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3440.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3440.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3440.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3440.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3440.670198][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3440.670200][ C3] PKRU: 55555554 [ 3440.670201][ C3] Call Trace: [ 3440.670205][ C3] [ 3440.670207][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3440.670215][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3440.670219][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3440.670224][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3440.670227][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3440.670232][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3440.670236][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3440.670239][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3440.670244][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3440.670247][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3440.670250][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3440.670253][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3440.670255][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3440.670258][ C3] ? xas_alloc (lib/xarray.c:378) [ 3440.670264][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3440.670268][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3440.670271][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3440.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3440.670280][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3440.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3440.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670294][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3440.670301][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3440.670307][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3440.670314][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3440.670317][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3440.670321][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3440.670323][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3440.670329][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3440.670332][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3440.670335][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3440.670340][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3440.670345][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3440.670348][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3440.670351][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3440.670354][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670358][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3440.670362][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3440.670367][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3440.670370][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3440.670376][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3440.670380][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670384][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3440.670388][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3440.670393][ C3] handle_softirqs (kernel/softirq.c:579) [ 3440.670399][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3440.670402][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3440.670405][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3440.670410][ C3] [ 3440.670411][ C3] [ 3440.670412][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3440.670417][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3440.670421][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3440.670424][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3440.670428][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3440.670430][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3440.670431][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3440.670433][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3440.670435][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3440.670439][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3440.670446][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3440.670452][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3440.670455][ C3] ? xas_alloc (lib/xarray.c:378) [ 3440.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3440.670462][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3440.670467][ C3] ? xas_alloc (lib/xarray.c:378) [ 3440.670469][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3440.670474][ C3] xas_alloc (lib/xarray.c:378) [ 3440.670479][ C3] xas_create (lib/xarray.c:685) [ 3440.670485][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3440.670489][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3440.670493][ C3] __xa_store (lib/xarray.c:1703) [ 3440.670497][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3440.670502][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3440.670505][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3440.670508][ C3] ? xa_store (lib/xarray.c:1734) [ 3440.670513][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3440.670517][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3440.670521][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3440.670526][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3440.670528][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3440.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3440.670538][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3440.670543][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3440.670547][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3440.670552][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3440.670556][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3440.670560][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3440.670568][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3440.670572][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3440.670578][ C3] ksys_unshare (kernel/fork.c:3121) [ 3440.670582][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3440.670586][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3440.670590][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3440.670592][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3440.670596][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3440.670602][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3440.670606][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3440.670611][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3440.670614][ C3] RIP: 0033:0x7f439756d93b [ 3440.670619][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3440.670622][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3440.670625][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3440.670627][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3440.670629][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3440.670631][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3440.670633][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3456.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3456.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3456.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3456.656135][ C0] Tainted: [L]=SOFTLOCKUP [ 3456.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3456.656139][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:177 mm/kasan/generic.c:189) [ 3456.656142][ C0] Code: ff ff ff ff ff ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff <48> 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff All code ======== 0: ff (bad) 1: ff (bad) 2: ff (bad) 3: ff (bad) 4: ff (bad) 5: ff (bad) 6: fe 48 39 decb 0x39(%rax) 9: c7 (bad) a: 77 23 ja 0x2f c: 44 89 c2 mov %r8d,%edx f: e8 b7 e7 ff ff call 0xffffffffffffe7cb 14: 83 f0 01 xor $0x1,%eax 17: 5b pop %rbx 18: 5d pop %rbp 19: 41 5c pop %r12 1b: c3 ret 1c: cc int3 1d: cc int3 1e: cc int3 1f: cc int3 20: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 27: 7f ff ff 2a:* 48 39 c7 cmp %rax,%rdi <-- trapping instruction 2d: 76 dd jbe 0xc 2f: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 34: 48 89 fd mov %rdi,%rbp 37: 48 rex.W 38: b8 00 00 00 00 mov $0x0,%eax 3d: 00 fc add %bh,%ah 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 48 39 c7 cmp %rax,%rdi 3: 76 dd jbe 0xffffffffffffffe2 5: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 a: 48 89 fd mov %rdi,%rbp d: 48 rex.W e: b8 00 00 00 00 mov $0x0,%eax 13: 00 fc add %bh,%ah 15: ff .byte 0xff [ 3456.656145][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 3456.656147][ C0] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3456.656150][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3456.656152][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3456.656154][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3456.656156][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3456.656158][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3456.656160][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3456.656164][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3456.656166][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3456.656167][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3456.656169][ C0] PKRU: 55555554 [ 3456.656170][ C0] Call Trace: [ 3456.656172][ C0] [ 3456.656174][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3456.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3456.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3456.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3456.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3456.656194][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3456.656197][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3456.656200][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3456.656203][ C0] ? xa_store (lib/xarray.c:1734) [ 3456.656208][ C0] xa_store (lib/xarray.c:1734) [ 3456.656212][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3456.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3456.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3456.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3456.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3456.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3456.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3456.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3456.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3456.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3456.656252][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3456.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3456.656263][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3456.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3456.656271][ C0] ksys_unshare (kernel/fork.c:3121) [ 3456.656276][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3456.656279][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3456.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3456.656285][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3456.656289][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3456.656294][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3456.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3456.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3456.656305][ C0] RIP: 0033:0x7f439756d93b [ 3456.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3456.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3456.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3456.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3456.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3456.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3456.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3460.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3460.669123][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3460.669127][ C2] softirqs last disabled at (0): 0x0 | [ 3460.669135][ C2] Tainted: [L]=SOFTLOCKUP [ 3460.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3460.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3460.669143][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3460.669146][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3460.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3460.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3460.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3460.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3460.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3460.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3460.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3460.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3460.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3460.669168][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3460.669170][ C2] PKRU: 55555554 [ 3460.669171][ C2] Call Trace: [ 3460.669176][ C2] [ 3460.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3460.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3460.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3460.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3460.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3460.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3460.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3460.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 3460.669208][ C2] xa_store (lib/xarray.c:1734) [ 3460.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3460.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3460.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3460.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3460.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3460.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3460.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3460.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3460.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3460.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3460.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3460.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3460.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3460.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3460.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 3460.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3460.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3460.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3460.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3460.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3460.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3460.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3460.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3460.669305][ C2] RIP: 0033:0x7f439756d93b [ 3460.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3460.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3460.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3460.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3460.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3460.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3460.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3466.506654][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3466.506935][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3466.507172][ C1] NMI backtrace for cpu 1 | [ 3466.507183][ C1] Tainted: [L]=SOFTLOCKUP [ 3466.507184][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3466.507186][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3466.507192][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3466.507195][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3466.507198][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3466.507200][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3466.507202][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3466.507204][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3466.507206][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3466.507208][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3466.507210][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3466.507214][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3466.507215][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3466.507217][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3466.507219][ C1] PKRU: 55555554 [ 3466.507220][ C1] Call Trace: [ 3466.507221][ C1] [ 3466.507224][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3466.507228][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3466.507232][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3466.507235][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3466.507240][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3466.507243][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3466.507246][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3466.507249][ C1] ? xa_store (lib/xarray.c:1734) [ 3466.507254][ C1] xa_store (lib/xarray.c:1734) [ 3466.507258][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3466.507262][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3466.507267][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3466.507269][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3466.507272][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.507276][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.507279][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3466.507284][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3466.507288][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3466.507293][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3466.507297][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3466.507301][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3466.507307][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3466.507311][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3466.507315][ C1] ksys_unshare (kernel/fork.c:3121) [ 3466.507319][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3466.507323][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3466.507326][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3466.507329][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3466.507332][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3466.507337][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3466.507341][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3466.507345][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3466.507348][ C1] RIP: 0033:0x7f439756d93b [ 3466.507351][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3466.507354][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3466.507356][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3466.507358][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3466.507360][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3466.507362][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3466.507364][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3466.507362][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3466.507364][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3466.507370][ C1] | [ 3466.508177][ C3] Tainted: [L]=SOFTLOCKUP [ 3466.508179][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3466.508181][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3466.508186][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3466.508190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3466.508193][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3466.508195][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3466.508197][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3466.508199][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3466.508201][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3466.508203][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3466.508205][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3466.508209][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3466.508211][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3466.508213][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3466.508215][ C3] PKRU: 55555554 [ 3466.508216][ C3] Call Trace: [ 3466.508217][ C3] [ 3466.508218][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3466.508224][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3466.508228][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3466.508232][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3466.508235][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3466.508239][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3466.508242][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3466.508246][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3466.508249][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3466.508252][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3466.508255][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3466.508258][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3466.508261][ C3] ? xas_alloc (lib/xarray.c:378) [ 3466.508266][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3466.508270][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3466.508273][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3466.508276][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3466.508281][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3466.508285][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3466.508290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508294][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3466.508300][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3466.508305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508308][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3466.508311][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3466.508314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3466.508318][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3466.508321][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3466.508326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3466.508329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3466.508333][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3466.508337][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3466.508341][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3466.508345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3466.508348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3466.508351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3466.508359][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3466.508364][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3466.508367][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3466.508372][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3466.508375][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508379][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3466.508384][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3466.508387][ C3] handle_softirqs (kernel/softirq.c:579) [ 3466.508393][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3466.508397][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3466.508400][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3466.508403][ C3] [ 3466.508405][ C3] [ 3466.508406][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3466.508410][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3466.508413][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3466.508416][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3466.508418][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3466.508420][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3466.508422][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3466.508423][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3466.508425][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3466.508429][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3466.508435][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3466.508440][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3466.508443][ C3] ? xas_alloc (lib/xarray.c:378) [ 3466.508447][ C3] ? xas_alloc (lib/xarray.c:378) [ 3466.508450][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3466.508454][ C3] ? xas_alloc (lib/xarray.c:378) [ 3466.508457][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3466.508461][ C3] xas_alloc (lib/xarray.c:378) [ 3466.508466][ C3] xas_create (lib/xarray.c:685) [ 3466.508471][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3466.508476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3466.508479][ C3] __xa_store (lib/xarray.c:1703) [ 3466.508483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3466.508488][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3466.508491][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3466.508494][ C3] ? xa_store (lib/xarray.c:1734) [ 3466.508498][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3466.508502][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3466.508505][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3466.508510][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3466.508513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3466.508515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3466.508523][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3466.508527][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3466.508531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3466.508535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3466.508539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3466.508544][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3466.508550][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3466.508554][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3466.508559][ C3] ksys_unshare (kernel/fork.c:3121) [ 3466.508564][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3466.508568][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3466.508571][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3466.508574][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3466.508577][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3466.508583][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3466.508587][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3466.508591][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3466.508594][ C3] RIP: 0033:0x7f439756d93b [ 3466.508599][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3466.508602][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3466.508605][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3466.508607][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3466.508608][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3466.508610][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3466.508612][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3484.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3484.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3484.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3484.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3484.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3484.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3484.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3484.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3484.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3484.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3484.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3484.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3484.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3484.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3484.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3484.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3484.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3484.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3484.656173][ C0] PKRU: 55555554 [ 3484.656174][ C0] Call Trace: [ 3484.656176][ C0] [ 3484.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3484.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3484.656186][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3484.656189][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3484.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3484.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3484.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3484.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 3484.656207][ C0] xa_store (lib/xarray.c:1734) [ 3484.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3484.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3484.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3484.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3484.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3484.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3484.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3484.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3484.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3484.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3484.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3484.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3484.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3484.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3484.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3484.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3484.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3484.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3484.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3484.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3484.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3484.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3484.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3484.656303][ C0] RIP: 0033:0x7f439756d93b [ 3484.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3484.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3484.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3484.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3484.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3484.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3484.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3488.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3488.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3488.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3488.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3488.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3488.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3488.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3488.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3488.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3488.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3488.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3488.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3488.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3488.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3488.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3488.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3488.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3488.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3488.669172][ C2] PKRU: 55555554 [ 3488.669173][ C2] Call Trace: [ 3488.669175][ C2] [ 3488.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3488.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3488.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3488.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3488.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3488.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3488.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3488.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 3488.669208][ C2] xa_store (lib/xarray.c:1734) [ 3488.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3488.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3488.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3488.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3488.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3488.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3488.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3488.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3488.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3488.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3488.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3488.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3488.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3488.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3488.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 3488.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3488.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3488.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3488.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3488.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3488.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3488.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3488.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3488.669304][ C2] RIP: 0033:0x7f439756d93b [ 3488.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3488.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3488.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3488.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3488.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3488.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3488.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3492.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3492.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3492.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3492.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3492.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3492.669141][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:103 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3492.669144][ C1] Code: 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea <48> 83 fa 10 0f 8e c0 00 00 00 41 89 eb 41 83 e3 07 75 7d 48 85 d2 All code ======== 0: 89 fd mov %edi,%ebp 2: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 9: fc ff df c: 4d 89 d1 mov %r10,%r9 f: 48 c1 ed 03 shr $0x3,%rbp 13: 49 c1 e9 03 shr $0x3,%r9 17: 48 01 c5 add %rax,%rbp 1a: 49 01 c1 add %rax,%r9 1d: 48 89 e8 mov %rbp,%rax 20: 49 8d 59 01 lea 0x1(%r9),%rbx 24: 48 89 da mov %rbx,%rdx 27: 48 29 ea sub %rbp,%rdx 2a:* 48 83 fa 10 cmp $0x10,%rdx <-- trapping instruction 2e: 0f 8e c0 00 00 00 jle 0xf4 34: 41 89 eb mov %ebp,%r11d 37: 41 83 e3 07 and $0x7,%r11d 3b: 75 7d jne 0xba 3d: 48 85 d2 test %rdx,%rdx Code starting with the faulting instruction =========================================== 0: 48 83 fa 10 cmp $0x10,%rdx 4: 0f 8e c0 00 00 00 jle 0xca a: 41 89 eb mov %ebp,%r11d d: 41 83 e3 07 and $0x7,%r11d 11: 75 7d jne 0x90 13: 48 85 d2 test %rdx,%rdx [ 3492.669148][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000202 [ 3492.669150][ C1] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3492.669153][ C1] RDX: 0000000000000001 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3492.669154][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3492.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3492.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3492.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3492.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3492.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3492.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3492.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3492.669172][ C1] PKRU: 55555554 [ 3492.669173][ C1] Call Trace: [ 3492.669175][ C1] [ 3492.669177][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3492.669182][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3492.669186][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3492.669190][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3492.669193][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3492.669198][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3492.669201][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3492.669204][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3492.669206][ C1] ? xa_store (lib/xarray.c:1734) [ 3492.669212][ C1] xa_store (lib/xarray.c:1734) [ 3492.669216][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3492.669219][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3492.669224][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3492.669227][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3492.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.669234][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.669237][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3492.669243][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3492.669246][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3492.669251][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3492.669255][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3492.669259][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3492.669265][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3492.669269][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3492.669273][ C1] ksys_unshare (kernel/fork.c:3121) [ 3492.669277][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3492.669281][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3492.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3492.669287][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3492.669291][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3492.669296][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3492.669300][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3492.669304][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3492.669307][ C1] RIP: 0033:0x7f439756d93b [ 3492.669310][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3492.669313][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3492.669316][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3492.669318][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3492.669320][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3492.669322][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3492.669324][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3492.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3492.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3492.670147][ C3] softirqs last disabled at (0): 0x0 | [ 3492.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 3492.670162][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3492.670164][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3492.670172][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3492.670175][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3492.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3492.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3492.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3492.670185][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3492.670187][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3492.670189][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3492.670191][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3492.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3492.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3492.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3492.670201][ C3] PKRU: 55555554 [ 3492.670202][ C3] Call Trace: [ 3492.670206][ C3] [ 3492.670208][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3492.670213][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3492.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3492.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3492.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3492.670230][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3492.670234][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3492.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3492.670241][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3492.670244][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3492.670247][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3492.670250][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3492.670253][ C3] ? xas_alloc (lib/xarray.c:378) [ 3492.670258][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3492.670263][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3492.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3492.670270][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3492.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3492.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3492.670285][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670290][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3492.670296][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3492.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3492.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3492.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3492.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3492.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3492.670323][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3492.670326][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3492.670329][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3492.670333][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3492.670338][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3492.670341][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3492.670344][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3492.670347][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670351][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3492.670355][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3492.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3492.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3492.670368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3492.670372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670375][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3492.670380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3492.670385][ C3] handle_softirqs (kernel/softirq.c:579) [ 3492.670391][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3492.670394][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3492.670398][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3492.670402][ C3] [ 3492.670403][ C3] [ 3492.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3492.670410][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3492.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3492.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3492.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3492.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3492.670425][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3492.670426][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3492.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3492.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3492.670439][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3492.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3492.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 3492.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 3492.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3492.670461][ C3] ? xas_alloc (lib/xarray.c:378) [ 3492.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3492.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3492.670473][ C3] xas_create (lib/xarray.c:685) [ 3492.670479][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3492.670484][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3492.670488][ C3] __xa_store (lib/xarray.c:1703) [ 3492.670492][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3492.670497][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3492.670500][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3492.670503][ C3] ? xa_store (lib/xarray.c:1734) [ 3492.670508][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3492.670512][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3492.670515][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3492.670521][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3492.670524][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3492.670527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3492.670535][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3492.670540][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3492.670544][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3492.670548][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3492.670552][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3492.670557][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3492.670564][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3492.670568][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3492.670573][ C3] ksys_unshare (kernel/fork.c:3121) [ 3492.670578][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3492.670581][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3492.670585][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3492.670587][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3492.670591][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3492.670597][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3492.670601][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3492.670606][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3492.670609][ C3] RIP: 0033:0x7f439756d93b [ 3492.670614][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3492.670617][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3492.670620][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3492.670622][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3492.670624][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3492.670626][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3492.670628][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3512.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3512.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3512.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3512.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3512.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3512.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3512.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3512.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3512.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3512.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3512.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3512.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3512.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3512.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3512.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3512.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3512.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3512.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3512.656171][ C0] PKRU: 55555554 [ 3512.656172][ C0] Call Trace: [ 3512.656174][ C0] [ 3512.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3512.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3512.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3512.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3512.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3512.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3512.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3512.656199][ C0] ? xa_store (lib/xarray.c:1734) [ 3512.656205][ C0] xa_store (lib/xarray.c:1734) [ 3512.656208][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3512.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3512.656216][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3512.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3512.656222][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3512.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3512.656230][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3512.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3512.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3512.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3512.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3512.656252][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3512.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3512.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3512.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 3512.656271][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3512.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3512.656278][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3512.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3512.656284][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3512.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3512.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3512.656298][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3512.656301][ C0] RIP: 0033:0x7f439756d93b [ 3512.656304][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3512.656306][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3512.656309][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3512.656311][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3512.656313][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3512.656315][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3512.656317][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3516.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3516.669123][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3516.669126][ C2] softirqs last disabled at (0): 0x0 | [ 3516.669135][ C2] Tainted: [L]=SOFTLOCKUP [ 3516.669136][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3516.669138][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3516.669142][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3516.669146][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3516.669148][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3516.669150][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3516.669152][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3516.669154][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3516.669156][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3516.669158][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3516.669161][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3516.669164][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3516.669166][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3516.669167][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3516.669169][ C2] PKRU: 55555554 [ 3516.669170][ C2] Call Trace: [ 3516.669172][ C2] [ 3516.669174][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3516.669178][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3516.669182][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3516.669185][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3516.669190][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3516.669193][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3516.669196][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3516.669199][ C2] ? xa_store (lib/xarray.c:1734) [ 3516.669204][ C2] xa_store (lib/xarray.c:1734) [ 3516.669208][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3516.669211][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3516.669217][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3516.669219][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3516.669222][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3516.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3516.669230][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3516.669235][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3516.669239][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3516.669243][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3516.669247][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3516.669251][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3516.669258][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3516.669262][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3516.669266][ C2] ksys_unshare (kernel/fork.c:3121) [ 3516.669270][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3516.669273][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3516.669277][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3516.669280][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3516.669283][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3516.669289][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3516.669293][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3516.669297][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3516.669300][ C2] RIP: 0033:0x7f439756d93b [ 3516.669303][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3516.669305][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3516.669308][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3516.669310][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3516.669312][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3516.669314][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3516.669316][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3520.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3520.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3520.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3520.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3520.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3520.669140][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 3520.669144][ C1] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 3520.669147][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000246 [ 3520.669149][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3520.669151][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3520.669153][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3520.669155][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3520.669157][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3520.669159][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3520.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3520.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3520.669167][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3520.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3520.669170][ C1] PKRU: 55555554 [ 3520.669171][ C1] Call Trace: [ 3520.669173][ C1] [ 3520.669174][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3520.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3520.669183][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3520.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3520.669190][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3520.669195][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3520.669198][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3520.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3520.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 3520.669208][ C1] xa_store (lib/xarray.c:1734) [ 3520.669212][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3520.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3520.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3520.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3520.669226][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.669234][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3520.669239][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3520.669243][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3520.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3520.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3520.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3520.669262][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3520.669266][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3520.669270][ C1] ksys_unshare (kernel/fork.c:3121) [ 3520.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3520.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3520.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3520.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3520.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3520.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3520.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3520.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3520.669304][ C1] RIP: 0033:0x7f439756d93b [ 3520.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3520.669309][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3520.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3520.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3520.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3520.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3520.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3520.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3520.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3520.670147][ C3] softirqs last disabled at (0): 0x0 | [ 3520.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 3520.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3520.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3520.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3520.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3520.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3520.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3520.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3520.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3520.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3520.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3520.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3520.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3520.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3520.670196][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3520.670198][ C3] PKRU: 55555554 [ 3520.670199][ C3] Call Trace: [ 3520.670204][ C3] [ 3520.670206][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3520.670211][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3520.670216][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3520.670220][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3520.670224][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3520.670229][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3520.670232][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3520.670236][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3520.670239][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3520.670243][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3520.670245][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3520.670248][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3520.670251][ C3] ? xas_alloc (lib/xarray.c:378) [ 3520.670256][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3520.670261][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3520.670264][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3520.670268][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3520.670274][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3520.670278][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3520.670283][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670288][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3520.670295][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3520.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3520.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3520.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3520.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3520.670316][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3520.670322][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3520.670325][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3520.670328][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3520.670332][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3520.670337][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3520.670340][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3520.670343][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3520.670346][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670350][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3520.670354][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3520.670358][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3520.670361][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3520.670367][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3520.670371][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670374][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3520.670380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3520.670384][ C3] handle_softirqs (kernel/softirq.c:579) [ 3520.670390][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3520.670394][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3520.670397][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3520.670402][ C3] [ 3520.670403][ C3] [ 3520.670404][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3520.670410][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3520.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3520.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3520.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3520.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3520.670424][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3520.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3520.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3520.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3520.670439][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3520.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3520.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 3520.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 3520.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3520.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3520.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3520.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3520.670472][ C3] xas_create (lib/xarray.c:685) [ 3520.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3520.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3520.670487][ C3] __xa_store (lib/xarray.c:1703) [ 3520.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3520.670496][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3520.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3520.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3520.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3520.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3520.670514][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3520.670519][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3520.670522][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3520.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3520.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3520.670537][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3520.670541][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3520.670545][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3520.670549][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3520.670554][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3520.670562][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3520.670565][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3520.670571][ C3] ksys_unshare (kernel/fork.c:3121) [ 3520.670575][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3520.670578][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3520.670582][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3520.670584][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3520.670588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3520.670594][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3520.670598][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3520.670603][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3520.670607][ C3] RIP: 0033:0x7f439756d93b [ 3520.670611][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3520.670614][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3520.670618][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3520.670620][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3520.670622][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3520.670624][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3520.670626][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3540.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3540.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3540.656126][ C0] softirqs last disabled at (0): 0x0 | [ 3540.656134][ C0] Tainted: [L]=SOFTLOCKUP [ 3540.656136][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3540.656138][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3540.656142][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3540.656145][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3540.656147][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3540.656150][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3540.656152][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3540.656154][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3540.656156][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3540.656158][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3540.656160][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3540.656163][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3540.656165][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3540.656167][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3540.656168][ C0] PKRU: 55555554 [ 3540.656170][ C0] Call Trace: [ 3540.656171][ C0] [ 3540.656174][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3540.656177][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3540.656181][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3540.656184][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3540.656189][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3540.656192][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3540.656194][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3540.656197][ C0] ? xa_store (lib/xarray.c:1734) [ 3540.656202][ C0] xa_store (lib/xarray.c:1734) [ 3540.656206][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3540.656209][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3540.656214][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3540.656217][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3540.656220][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3540.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3540.656227][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3540.656233][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3540.656236][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3540.656241][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3540.656245][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3540.656249][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3540.656256][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3540.656260][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3540.656264][ C0] ksys_unshare (kernel/fork.c:3121) [ 3540.656268][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3540.656271][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3540.656275][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3540.656278][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3540.656282][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3540.656287][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3540.656291][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3540.656295][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3540.656298][ C0] RIP: 0033:0x7f439756d93b [ 3540.656301][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3540.656304][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3540.656306][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3540.656309][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3540.656311][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3540.656312][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3540.656314][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3544.520878][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3544.521155][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3544.521393][ C1] NMI backtrace for cpu 1 | [ 3544.521404][ C1] Tainted: [L]=SOFTLOCKUP [ 3544.521405][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3544.521407][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3544.521413][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3544.521416][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3544.521420][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3544.521423][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3544.521425][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3544.521427][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3544.521429][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3544.521431][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3544.521433][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3544.521436][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3544.521438][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3544.521440][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3544.521442][ C1] PKRU: 55555554 [ 3544.521443][ C1] Call Trace: [ 3544.521445][ C1] [ 3544.521447][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3544.521451][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.521454][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.521458][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3544.521463][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3544.521466][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.521469][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.521471][ C1] ? xa_store (lib/xarray.c:1734) [ 3544.521477][ C1] xa_store (lib/xarray.c:1734) [ 3544.521481][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3544.521484][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3544.521489][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.521491][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.521494][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.521498][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.521502][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3544.521507][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3544.521510][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3544.521515][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3544.521519][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3544.521523][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3544.521529][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3544.521533][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3544.521537][ C1] ksys_unshare (kernel/fork.c:3121) [ 3544.521542][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3544.521545][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3544.521548][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3544.521551][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3544.521555][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3544.521560][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3544.521563][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3544.521567][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3544.521571][ C1] RIP: 0033:0x7f439756d93b [ 3544.521573][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3544.521576][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3544.521579][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3544.521581][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3544.521582][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3544.521584][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3544.521586][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3544.521584][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3544.521586][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3544.521592][ C1] | [ 3544.522400][ C3] Tainted: [L]=SOFTLOCKUP [ 3544.522401][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3544.522404][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3544.522409][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3544.522412][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3544.522415][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3544.522418][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3544.522420][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3544.522422][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3544.522424][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3544.522427][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3544.522429][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3544.522434][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3544.522436][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3544.522437][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3544.522439][ C3] PKRU: 55555554 [ 3544.522441][ C3] Call Trace: [ 3544.522442][ C3] [ 3544.522443][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3544.522448][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3544.522452][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3544.522455][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3544.522459][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3544.522463][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3544.522467][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3544.522471][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3544.522474][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3544.522477][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3544.522479][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3544.522482][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3544.522485][ C3] ? xas_alloc (lib/xarray.c:378) [ 3544.522491][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3544.522494][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.522497][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.522500][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3544.522506][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3544.522509][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3544.522515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522518][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3544.522524][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3544.522529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522531][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3544.522534][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3544.522538][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3544.522541][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3544.522544][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3544.522549][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3544.522552][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3544.522555][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3544.522560][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3544.522564][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3544.522567][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3544.522570][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3544.522574][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522577][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3544.522581][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3544.522586][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3544.522589][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3544.522594][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3544.522598][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522601][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3544.522606][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3544.522610][ C3] handle_softirqs (kernel/softirq.c:579) [ 3544.522615][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3544.522619][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3544.522622][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3544.522625][ C3] [ 3544.522626][ C3] [ 3544.522628][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3544.522632][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3544.522635][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3544.522638][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3544.522640][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3544.522642][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3544.522643][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3544.522645][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3544.522647][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3544.522651][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3544.522657][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3544.522662][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3544.522665][ C3] ? xas_alloc (lib/xarray.c:378) [ 3544.522670][ C3] ? xas_alloc (lib/xarray.c:378) [ 3544.522673][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3544.522677][ C3] ? xas_alloc (lib/xarray.c:378) [ 3544.522680][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3544.522685][ C3] xas_alloc (lib/xarray.c:378) [ 3544.522690][ C3] xas_create (lib/xarray.c:685) [ 3544.522696][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3544.522700][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.522704][ C3] __xa_store (lib/xarray.c:1703) [ 3544.522707][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3544.522712][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.522715][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.522718][ C3] ? xa_store (lib/xarray.c:1734) [ 3544.522722][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3544.522726][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3544.522729][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3544.522734][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.522737][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.522739][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522743][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.522747][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3544.522752][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3544.522756][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3544.522760][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3544.522764][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3544.522769][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3544.522776][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3544.522779][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3544.522784][ C3] ksys_unshare (kernel/fork.c:3121) [ 3544.522789][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3544.522793][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3544.522796][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3544.522799][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3544.522802][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3544.522808][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3544.522812][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3544.522816][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3544.522819][ C3] RIP: 0033:0x7f439756d93b [ 3544.522824][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3544.522826][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3544.522829][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3544.522831][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3544.522833][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3544.522835][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3544.522836][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3544.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3544.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3544.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3544.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3544.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3544.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3544.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3544.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3544.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3544.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3544.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3544.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3544.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3544.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3544.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3544.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3544.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3544.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3544.669172][ C2] PKRU: 55555554 [ 3544.669173][ C2] Call Trace: [ 3544.669175][ C2] [ 3544.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3544.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3544.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3544.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3544.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 3544.669208][ C2] xa_store (lib/xarray.c:1734) [ 3544.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3544.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3544.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3544.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3544.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3544.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3544.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3544.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3544.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3544.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3544.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3544.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3544.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3544.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 3544.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3544.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3544.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3544.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3544.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3544.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3544.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3544.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3544.669305][ C2] RIP: 0033:0x7f439756d93b [ 3544.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3544.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3544.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3544.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3544.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3544.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3544.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3568.656132][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3568.656139][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3568.656143][ C0] softirqs last disabled at (0): 0x0 | [ 3568.656155][ C0] Tainted: [L]=SOFTLOCKUP [ 3568.656157][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3568.656158][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3568.656167][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3568.656170][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3568.656173][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3568.656175][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3568.656177][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3568.656179][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3568.656182][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3568.656183][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3568.656186][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3568.656190][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3568.656191][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3568.656193][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3568.656195][ C0] PKRU: 55555554 [ 3568.656196][ C0] Call Trace: [ 3568.656199][ C0] [ 3568.656203][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3568.656207][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.656211][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.656215][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3568.656222][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3568.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.656227][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.656230][ C0] ? xa_store (lib/xarray.c:1734) [ 3568.656236][ C0] xa_store (lib/xarray.c:1734) [ 3568.656240][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3568.656245][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3568.656250][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.656253][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.656256][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.656262][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.656266][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3568.656273][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3568.656276][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3568.656281][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3568.656286][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3568.656291][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3568.656299][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3568.656303][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3568.656308][ C0] ksys_unshare (kernel/fork.c:3121) [ 3568.656313][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3568.656316][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3568.656321][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3568.656324][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3568.656328][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3568.656334][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3568.656338][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3568.656343][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3568.656348][ C0] RIP: 0033:0x7f439756d93b [ 3568.656351][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3568.656354][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3568.656357][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3568.656359][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3568.656361][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3568.656363][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3568.656365][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3568.669139][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3568.669145][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3568.669149][ C1] softirqs last disabled at (0): 0x0 | [ 3568.669158][ C1] Tainted: [L]=SOFTLOCKUP [ 3568.669160][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3568.669162][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 3568.669168][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 3568.669171][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 3568.669174][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3568.669176][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3568.669178][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3568.669180][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3568.669182][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3568.669184][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3568.669187][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3568.669190][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3568.669192][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3568.669194][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3568.669195][ C1] PKRU: 55555554 [ 3568.669196][ C1] Call Trace: [ 3568.669198][ C1] [ 3568.669200][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3568.669207][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3568.669210][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.669215][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.669218][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3568.669223][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3568.669227][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.669230][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.669233][ C1] ? xa_store (lib/xarray.c:1734) [ 3568.669238][ C1] xa_store (lib/xarray.c:1734) [ 3568.669242][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3568.669246][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3568.669251][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.669254][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.669257][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.669261][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.669265][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3568.669270][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3568.669274][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3568.669279][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3568.669284][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3568.669288][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3568.669295][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3568.669299][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3568.669303][ C1] ksys_unshare (kernel/fork.c:3121) [ 3568.669308][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3568.669311][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3568.669315][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3568.669318][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3568.669322][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3568.669327][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3568.669331][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3568.669335][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3568.669339][ C1] RIP: 0033:0x7f439756d93b [ 3568.669342][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3568.669346][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3568.669349][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3568.669351][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3568.669353][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3568.669355][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3568.669357][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3568.670138][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3568.670146][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3568.670150][ C3] softirqs last disabled at (0): 0x0 | [ 3568.670164][ C3] Tainted: [L]=SOFTLOCKUP [ 3568.670165][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3568.670168][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 3568.670175][ C3] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 3568.670178][ C3] RSP: 0018:ffffc90000270a30 EFLAGS: 00000282 [ 3568.670181][ C3] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3568.670183][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3568.670185][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3568.670187][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3568.670190][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3568.670192][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3568.670195][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3568.670199][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3568.670201][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3568.670203][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3568.670204][ C3] PKRU: 55555554 [ 3568.670206][ C3] Call Trace: [ 3568.670209][ C3] [ 3568.670213][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3568.670220][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3568.670225][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3568.670229][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3568.670232][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3568.670237][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3568.670241][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3568.670245][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3568.670249][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3568.670253][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3568.670256][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3568.670259][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3568.670261][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3568.670265][ C3] ? xas_alloc (lib/xarray.c:378) [ 3568.670270][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3568.670275][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.670279][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.670282][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3568.670288][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3568.670292][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3568.670298][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670302][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3568.670308][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3568.670314][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670317][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3568.670320][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3568.670324][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3568.670327][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3568.670330][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3568.670336][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3568.670339][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3568.670342][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3568.670347][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3568.670352][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3568.670355][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3568.670359][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3568.670362][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670366][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3568.670370][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3568.670375][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3568.670378][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3568.670383][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3568.670387][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670391][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3568.670396][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3568.670401][ C3] handle_softirqs (kernel/softirq.c:579) [ 3568.670407][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3568.670411][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3568.670414][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3568.670418][ C3] [ 3568.670419][ C3] [ 3568.670421][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3568.670426][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3568.670430][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3568.670433][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3568.670436][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3568.670438][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3568.670440][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3568.670442][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3568.670445][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3568.670449][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3568.670455][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3568.670461][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3568.670465][ C3] ? xas_alloc (lib/xarray.c:378) [ 3568.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 3568.670472][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3568.670477][ C3] ? xas_alloc (lib/xarray.c:378) [ 3568.670479][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3568.670485][ C3] xas_alloc (lib/xarray.c:378) [ 3568.670489][ C3] xas_create (lib/xarray.c:685) [ 3568.670495][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3568.670500][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.670504][ C3] __xa_store (lib/xarray.c:1703) [ 3568.670508][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3568.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.670516][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3568.670519][ C3] ? xa_store (lib/xarray.c:1734) [ 3568.670524][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3568.670528][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3568.670531][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3568.670536][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3568.670539][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3568.670542][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670546][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3568.670549][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3568.670554][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3568.670558][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3568.670562][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3568.670567][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3568.670571][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3568.670579][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3568.670583][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3568.670589][ C3] ksys_unshare (kernel/fork.c:3121) [ 3568.670594][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3568.670597][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3568.670601][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3568.670603][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3568.670607][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3568.670613][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3568.670617][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3568.670622][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3568.670625][ C3] RIP: 0033:0x7f439756d93b [ 3568.670629][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3568.670632][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3568.670635][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3568.670637][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3568.670638][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3568.670640][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3568.670642][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3572.669129][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3572.669136][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3572.669139][ C2] softirqs last disabled at (0): 0x0 | [ 3572.669151][ C2] Tainted: [L]=SOFTLOCKUP [ 3572.669152][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3572.669154][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3572.669162][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3572.669166][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3572.669169][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3572.669171][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3572.669173][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3572.669175][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3572.669177][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3572.669179][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3572.669181][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3572.669185][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3572.669187][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3572.669188][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3572.669190][ C2] PKRU: 55555554 [ 3572.669191][ C2] Call Trace: [ 3572.669195][ C2] [ 3572.669198][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3572.669202][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3572.669206][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3572.669210][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3572.669216][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3572.669220][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3572.669222][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3572.669225][ C2] ? xa_store (lib/xarray.c:1734) [ 3572.669232][ C2] xa_store (lib/xarray.c:1734) [ 3572.669236][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3572.669240][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3572.669245][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3572.669248][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3572.669251][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3572.669256][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3572.669260][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3572.669267][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3572.669271][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3572.669275][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3572.669280][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3572.669284][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3572.669292][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3572.669296][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3572.669301][ C2] ksys_unshare (kernel/fork.c:3121) [ 3572.669306][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3572.669309][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3572.669314][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3572.669316][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3572.669320][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3572.669326][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3572.669330][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3572.669335][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3572.669340][ C2] RIP: 0033:0x7f439756d93b [ 3572.669344][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3572.669347][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3572.669350][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3572.669352][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3572.669354][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3572.669356][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3572.669358][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3596.656123][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3596.656129][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3596.656132][ C0] softirqs last disabled at (0): 0x0 | [ 3596.656142][ C0] Tainted: [L]=SOFTLOCKUP [ 3596.656143][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3596.656146][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 3596.656151][ C0] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 3596.656154][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000246 [ 3596.656157][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3596.656159][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3596.656161][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3596.656163][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3596.656165][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3596.656167][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3596.656170][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3596.656173][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3596.656175][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3596.656177][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3596.656178][ C0] PKRU: 55555554 [ 3596.656180][ C0] Call Trace: [ 3596.656182][ C0] [ 3596.656185][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3596.656188][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.656192][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.656195][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3596.656201][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3596.656204][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.656207][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.656209][ C0] ? xa_store (lib/xarray.c:1734) [ 3596.656215][ C0] xa_store (lib/xarray.c:1734) [ 3596.656219][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3596.656223][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3596.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.656231][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.656240][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.656243][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3596.656249][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3596.656253][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3596.656258][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3596.656262][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3596.656267][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3596.656275][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3596.656278][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3596.656283][ C0] ksys_unshare (kernel/fork.c:3121) [ 3596.656288][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3596.656291][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3596.656295][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3596.656297][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3596.656301][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3596.656307][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3596.656310][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3596.656315][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3596.656318][ C0] RIP: 0033:0x7f439756d93b [ 3596.656321][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3596.656324][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3596.656327][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3596.656329][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3596.656331][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3596.656333][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3596.656335][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3596.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3596.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3596.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3596.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3596.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3596.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3596.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3596.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3596.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3596.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3596.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3596.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3596.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3596.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3596.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3596.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3596.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3596.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3596.669173][ C1] PKRU: 55555554 [ 3596.669174][ C1] Call Trace: [ 3596.669176][ C1] [ 3596.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3596.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3596.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3596.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 3596.669207][ C1] xa_store (lib/xarray.c:1734) [ 3596.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3596.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3596.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.669226][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3596.669239][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3596.669243][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3596.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3596.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3596.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3596.669262][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3596.669266][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3596.669270][ C1] ksys_unshare (kernel/fork.c:3121) [ 3596.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3596.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3596.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3596.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3596.669288][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3596.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3596.669297][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3596.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3596.669304][ C1] RIP: 0033:0x7f439756d93b [ 3596.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3596.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3596.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3596.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3596.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3596.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3596.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3596.670136][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3596.670144][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3596.670148][ C3] softirqs last disabled at (0): 0x0 | [ 3596.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 3596.670161][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3596.670164][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3596.670172][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3596.670175][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3596.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3596.670181][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3596.670183][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3596.670186][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3596.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3596.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3596.670192][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3596.670196][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3596.670198][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3596.670200][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3596.670202][ C3] PKRU: 55555554 [ 3596.670203][ C3] Call Trace: [ 3596.670207][ C3] [ 3596.670209][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3596.670214][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3596.670220][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3596.670223][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3596.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3596.670232][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3596.670235][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3596.670239][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3596.670243][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3596.670246][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3596.670249][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3596.670251][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3596.670254][ C3] ? xas_alloc (lib/xarray.c:378) [ 3596.670260][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3596.670265][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.670268][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.670272][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3596.670277][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3596.670282][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3596.670287][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670292][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3596.670299][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3596.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670308][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3596.670311][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3596.670314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3596.670318][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3596.670321][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3596.670326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3596.670329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3596.670332][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3596.670337][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3596.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3596.670345][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3596.670348][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3596.670351][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3596.670360][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3596.670365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3596.670368][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3596.670373][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3596.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670381][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3596.670386][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3596.670390][ C3] handle_softirqs (kernel/softirq.c:579) [ 3596.670396][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3596.670400][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3596.670403][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3596.670407][ C3] [ 3596.670408][ C3] [ 3596.670410][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3596.670416][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3596.670420][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3596.670423][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3596.670426][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3596.670428][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3596.670430][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3596.670432][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3596.670434][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3596.670439][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3596.670445][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3596.670451][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3596.670456][ C3] ? xas_alloc (lib/xarray.c:378) [ 3596.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3596.670463][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3596.670468][ C3] ? xas_alloc (lib/xarray.c:378) [ 3596.670471][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3596.670476][ C3] xas_alloc (lib/xarray.c:378) [ 3596.670480][ C3] xas_create (lib/xarray.c:685) [ 3596.670487][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3596.670491][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.670495][ C3] __xa_store (lib/xarray.c:1703) [ 3596.670499][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3596.670504][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.670507][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3596.670510][ C3] ? xa_store (lib/xarray.c:1734) [ 3596.670515][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3596.670519][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3596.670522][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3596.670527][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3596.670530][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3596.670533][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670537][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3596.670541][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3596.670546][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3596.670550][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3596.670555][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3596.670559][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3596.670564][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3596.670572][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3596.670577][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3596.670582][ C3] ksys_unshare (kernel/fork.c:3121) [ 3596.670586][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3596.670590][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3596.670593][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3596.670596][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3596.670600][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3596.670606][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3596.670610][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3596.670615][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3596.670618][ C3] RIP: 0033:0x7f439756d93b [ 3596.670623][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3596.670626][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3596.670629][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3596.670631][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3596.670633][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3596.670635][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3596.670636][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3600.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3600.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3600.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3600.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3600.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3600.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3600.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3600.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3600.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3600.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3600.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3600.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3600.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3600.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3600.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3600.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3600.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3600.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3600.669171][ C2] PKRU: 55555554 [ 3600.669172][ C2] Call Trace: [ 3600.669174][ C2] [ 3600.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3600.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3600.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3600.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3600.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3600.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3600.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3600.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3600.669206][ C2] xa_store (lib/xarray.c:1734) [ 3600.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3600.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3600.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3600.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3600.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3600.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3600.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3600.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3600.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3600.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3600.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3600.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3600.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3600.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3600.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 3600.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3600.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3600.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3600.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3600.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3600.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3600.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3600.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3600.669304][ C2] RIP: 0033:0x7f439756d93b [ 3600.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3600.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3600.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3600.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3600.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3600.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3600.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3622.534312][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3622.534751][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3622.534997][ C1] NMI backtrace for cpu 1 | [ 3622.535007][ C1] Tainted: [L]=SOFTLOCKUP [ 3622.535008][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3622.535010][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3622.535016][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3622.535019][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3622.535021][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3622.535023][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3622.535025][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3622.535027][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3622.535029][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3622.535031][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3622.535033][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3622.535036][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3622.535038][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3622.535040][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3622.535042][ C1] PKRU: 55555554 [ 3622.535043][ C1] Call Trace: [ 3622.535044][ C1] [ 3622.535046][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3622.535050][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3622.535054][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3622.535057][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3622.535062][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3622.535065][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3622.535068][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3622.535071][ C1] ? xa_store (lib/xarray.c:1734) [ 3622.535076][ C1] xa_store (lib/xarray.c:1734) [ 3622.535080][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3622.535083][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3622.535088][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3622.535091][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3622.535094][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.535098][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.535102][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3622.535107][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3622.535111][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3622.535115][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3622.535119][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3622.535124][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3622.535130][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3622.535134][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3622.535138][ C1] ksys_unshare (kernel/fork.c:3121) [ 3622.535142][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3622.535146][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3622.535149][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3622.535152][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3622.535155][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3622.535160][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3622.535164][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3622.535168][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3622.535171][ C1] RIP: 0033:0x7f439756d93b [ 3622.535174][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3622.535176][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3622.535180][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3622.535181][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3622.535183][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3622.535185][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3622.535187][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3622.535185][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3622.535187][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3622.535193][ C1] | [ 3622.536001][ C3] Tainted: [L]=SOFTLOCKUP [ 3622.536003][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3622.536005][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3622.536010][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3622.536014][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3622.536017][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3622.536020][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3622.536022][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3622.536023][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3622.536025][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3622.536027][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3622.536030][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3622.536034][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3622.536036][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3622.536038][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3622.536040][ C3] PKRU: 55555554 [ 3622.536041][ C3] Call Trace: [ 3622.536042][ C3] [ 3622.536044][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3622.536049][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3622.536054][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3622.536057][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3622.536060][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3622.536066][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3622.536069][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3622.536073][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3622.536077][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3622.536080][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3622.536083][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3622.536086][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3622.536088][ C3] ? xas_alloc (lib/xarray.c:378) [ 3622.536094][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3622.536097][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3622.536100][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3622.536103][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3622.536109][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3622.536112][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3622.536118][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536121][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3622.536127][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3622.536132][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536135][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3622.536138][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3622.536141][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3622.536144][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3622.536147][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3622.536153][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3622.536155][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3622.536158][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3622.536163][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3622.536167][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3622.536170][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3622.536173][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3622.536177][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536180][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3622.536185][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3622.536189][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3622.536192][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3622.536197][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3622.536201][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536204][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3622.536209][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3622.536213][ C3] handle_softirqs (kernel/softirq.c:579) [ 3622.536219][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3622.536222][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3622.536226][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3622.536229][ C3] [ 3622.536230][ C3] [ 3622.536231][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3622.536235][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3622.536238][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3622.536240][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3622.536243][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3622.536245][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3622.536247][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3622.536248][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3622.536250][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3622.536254][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3622.536259][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3622.536264][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3622.536268][ C3] ? xas_alloc (lib/xarray.c:378) [ 3622.536272][ C3] ? xas_alloc (lib/xarray.c:378) [ 3622.536275][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3622.536279][ C3] ? xas_alloc (lib/xarray.c:378) [ 3622.536282][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3622.536286][ C3] xas_alloc (lib/xarray.c:378) [ 3622.536291][ C3] xas_create (lib/xarray.c:685) [ 3622.536296][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3622.536301][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3622.536304][ C3] __xa_store (lib/xarray.c:1703) [ 3622.536308][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3622.536313][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3622.536315][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3622.536318][ C3] ? xa_store (lib/xarray.c:1734) [ 3622.536323][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3622.536327][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3622.536330][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3622.536334][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3622.536337][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3622.536340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536344][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3622.536347][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3622.536352][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3622.536356][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3622.536360][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3622.536364][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3622.536369][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3622.536375][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3622.536379][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3622.536384][ C3] ksys_unshare (kernel/fork.c:3121) [ 3622.536390][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3622.536393][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3622.536396][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3622.536399][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3622.536402][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3622.536408][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3622.536412][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3622.536417][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3622.536420][ C3] RIP: 0033:0x7f439756d93b [ 3622.536424][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3622.536427][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3622.536429][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3622.536431][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3622.536433][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3622.536434][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3622.536436][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3624.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3624.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3624.656129][ C0] softirqs last disabled at (0): 0x0 | [ 3624.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3624.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3624.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3624.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3624.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3624.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3624.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3624.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3624.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3624.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3624.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3624.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3624.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3624.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3624.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3624.656172][ C0] PKRU: 55555554 [ 3624.656173][ C0] Call Trace: [ 3624.656175][ C0] [ 3624.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3624.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3624.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3624.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3624.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3624.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3624.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3624.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 3624.656207][ C0] xa_store (lib/xarray.c:1734) [ 3624.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3624.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3624.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3624.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3624.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3624.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3624.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3624.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3624.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3624.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3624.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3624.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3624.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3624.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3624.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3624.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3624.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3624.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3624.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3624.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3624.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3624.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3624.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3624.656302][ C0] RIP: 0033:0x7f439756d93b [ 3624.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3624.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3624.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3624.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3624.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3624.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3624.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3628.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3628.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3628.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3628.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3628.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3628.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3628.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3628.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3628.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3628.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3628.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3628.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3628.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3628.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3628.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3628.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3628.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3628.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3628.669172][ C2] PKRU: 55555554 [ 3628.669173][ C2] Call Trace: [ 3628.669175][ C2] [ 3628.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3628.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3628.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3628.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3628.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3628.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3628.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3628.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3628.669206][ C2] xa_store (lib/xarray.c:1734) [ 3628.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3628.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3628.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3628.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3628.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3628.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3628.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3628.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3628.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3628.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3628.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3628.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3628.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3628.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3628.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 3628.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3628.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3628.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3628.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3628.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3628.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3628.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3628.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3628.669304][ C2] RIP: 0033:0x7f439756d93b [ 3628.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3628.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3628.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3628.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3628.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3628.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3628.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3648.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3648.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3648.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3648.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3648.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3648.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3648.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3648.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3648.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3648.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3648.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3648.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3648.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3648.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3648.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3648.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3648.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3648.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3648.669172][ C1] PKRU: 55555554 [ 3648.669173][ C1] Call Trace: [ 3648.669175][ C1] [ 3648.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3648.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3648.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3648.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3648.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3648.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3648.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3648.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 3648.669207][ C1] xa_store (lib/xarray.c:1734) [ 3648.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3648.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3648.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3648.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3648.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3648.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3648.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3648.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3648.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3648.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3648.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3648.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3648.669270][ C1] ksys_unshare (kernel/fork.c:3121) [ 3648.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3648.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3648.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3648.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3648.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3648.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3648.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3648.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3648.669304][ C1] RIP: 0033:0x7f439756d93b [ 3648.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3648.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3648.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3648.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3648.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3648.669319][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3648.669321][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3648.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3648.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3648.670163][ C3] softirqs last disabled at (0): 0x0 | [ 3648.670175][ C3] Tainted: [L]=SOFTLOCKUP [ 3648.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3648.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3648.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3648.670190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3648.670193][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3648.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3648.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3648.670199][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3648.670202][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3648.670203][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3648.670206][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3648.670210][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3648.670212][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3648.670214][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3648.670215][ C3] PKRU: 55555554 [ 3648.670216][ C3] Call Trace: [ 3648.670220][ C3] [ 3648.670222][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3648.670228][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3648.670233][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3648.670237][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3648.670241][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3648.670246][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3648.670249][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3648.670253][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3648.670256][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3648.670260][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3648.670263][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3648.670265][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3648.670269][ C3] ? xas_alloc (lib/xarray.c:378) [ 3648.670274][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3648.670279][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3648.670282][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3648.670286][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3648.670291][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3648.670295][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3648.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670305][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3648.670311][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3648.670317][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670320][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3648.670323][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3648.670327][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3648.670330][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3648.670333][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3648.670340][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3648.670343][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3648.670346][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3648.670350][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3648.670356][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3648.670359][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3648.670362][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3648.670366][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670369][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3648.670374][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3648.670379][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3648.670381][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3648.670387][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3648.670391][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670394][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3648.670399][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3648.670404][ C3] handle_softirqs (kernel/softirq.c:579) [ 3648.670410][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3648.670413][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3648.670417][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3648.670421][ C3] [ 3648.670422][ C3] [ 3648.670424][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3648.670429][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3648.670433][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3648.670436][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3648.670439][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3648.670441][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3648.670443][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3648.670445][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3648.670446][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3648.670451][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3648.670457][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3648.670463][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3648.670467][ C3] ? xas_alloc (lib/xarray.c:378) [ 3648.670471][ C3] ? xas_alloc (lib/xarray.c:378) [ 3648.670474][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3648.670478][ C3] ? xas_alloc (lib/xarray.c:378) [ 3648.670481][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3648.670486][ C3] xas_alloc (lib/xarray.c:378) [ 3648.670491][ C3] xas_create (lib/xarray.c:685) [ 3648.670496][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3648.670501][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3648.670505][ C3] __xa_store (lib/xarray.c:1703) [ 3648.670509][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3648.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3648.670516][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3648.670519][ C3] ? xa_store (lib/xarray.c:1734) [ 3648.670524][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3648.670528][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3648.670532][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3648.670537][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3648.670540][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3648.670543][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670547][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3648.670550][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3648.670555][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3648.670559][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3648.670564][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3648.670568][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3648.670572][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3648.670580][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3648.670584][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3648.670590][ C3] ksys_unshare (kernel/fork.c:3121) [ 3648.670594][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3648.670598][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3648.670601][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3648.670604][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3648.670607][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3648.670614][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3648.670618][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3648.670623][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3648.670627][ C3] RIP: 0033:0x7f439756d93b [ 3648.670631][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3648.670634][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3648.670637][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3648.670639][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3648.670641][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3648.670643][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3648.670646][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3652.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3652.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3652.656127][ C0] softirqs last disabled at (0): 0x0 | [ 3652.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3652.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3652.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3652.656143][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3652.656146][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3652.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3652.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3652.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3652.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3652.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3652.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3652.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3652.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3652.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3652.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3652.656171][ C0] PKRU: 55555554 [ 3652.656172][ C0] Call Trace: [ 3652.656173][ C0] [ 3652.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3652.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3652.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3652.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3652.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3652.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3652.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3652.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 3652.656205][ C0] xa_store (lib/xarray.c:1734) [ 3652.656208][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3652.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3652.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3652.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3652.656222][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3652.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3652.656230][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3652.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3652.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3652.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3652.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3652.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3652.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3652.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3652.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 3652.656271][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3652.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3652.656278][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3652.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3652.656285][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3652.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3652.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3652.656298][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3652.656301][ C0] RIP: 0033:0x7f439756d93b [ 3652.656303][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3652.656306][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3652.656309][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3652.656312][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3652.656314][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3652.656315][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3652.656317][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3656.669151][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3656.669160][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3656.669163][ C2] softirqs last disabled at (0): 0x0 | [ 3656.669177][ C2] Tainted: [L]=SOFTLOCKUP [ 3656.669178][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3656.669181][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3656.669191][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3656.669195][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3656.669198][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3656.669200][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3656.669202][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3656.669205][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3656.669207][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3656.669208][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3656.669211][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3656.669215][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3656.669217][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3656.669219][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3656.669220][ C2] PKRU: 55555554 [ 3656.669222][ C2] Call Trace: [ 3656.669226][ C2] [ 3656.669230][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3656.669234][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3656.669240][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3656.669244][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3656.669252][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3656.669256][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3656.669259][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3656.669261][ C2] ? xa_store (lib/xarray.c:1734) [ 3656.669269][ C2] xa_store (lib/xarray.c:1734) [ 3656.669274][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3656.669280][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3656.669286][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3656.669289][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3656.669292][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3656.669299][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3656.669302][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3656.669310][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3656.669314][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3656.669319][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3656.669326][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3656.669330][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3656.669339][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3656.669343][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3656.669349][ C2] ksys_unshare (kernel/fork.c:3121) [ 3656.669354][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3656.669357][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3656.669363][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3656.669366][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3656.669369][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3656.669377][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3656.669381][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3656.669386][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3656.669392][ C2] RIP: 0033:0x7f439756d93b [ 3656.669397][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3656.669400][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3656.669403][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3656.669405][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3656.669407][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3656.669409][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3656.669411][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3676.669125][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3676.669131][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3676.669134][ C1] softirqs last disabled at (0): 0x0 | [ 3676.669146][ C1] Tainted: [L]=SOFTLOCKUP [ 3676.669147][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3676.669149][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3676.669155][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3676.669158][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3676.669160][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3676.669162][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3676.669165][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3676.669167][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3676.669169][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3676.669171][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3676.669173][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3676.669177][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3676.669179][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3676.669181][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3676.669182][ C1] PKRU: 55555554 [ 3676.669184][ C1] Call Trace: [ 3676.669186][ C1] [ 3676.669189][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3676.669193][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3676.669197][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3676.669201][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3676.669206][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3676.669209][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3676.669212][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3676.669216][ C1] ? xa_store (lib/xarray.c:1734) [ 3676.669221][ C1] xa_store (lib/xarray.c:1734) [ 3676.669225][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3676.669230][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3676.669235][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3676.669238][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3676.669240][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.669245][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.669249][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3676.669255][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3676.669259][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3676.669264][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3676.669268][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3676.669272][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3676.669279][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3676.669283][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3676.669287][ C1] ksys_unshare (kernel/fork.c:3121) [ 3676.669292][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3676.669295][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3676.669299][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3676.669302][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3676.669306][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3676.669311][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3676.669315][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3676.669319][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3676.669323][ C1] RIP: 0033:0x7f439756d93b [ 3676.669327][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3676.669329][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3676.669332][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3676.669335][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3676.669336][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3676.669338][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3676.669340][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3676.670151][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3676.670159][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3676.670163][ C3] softirqs last disabled at (0): 0x0 | [ 3676.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 3676.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3676.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3676.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3676.670190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3676.670193][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3676.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3676.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3676.670200][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3676.670202][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3676.670203][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3676.670206][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3676.670210][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3676.670212][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3676.670214][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3676.670215][ C3] PKRU: 55555554 [ 3676.670217][ C3] Call Trace: [ 3676.670220][ C3] [ 3676.670222][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3676.670228][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3676.670233][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3676.670236][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3676.670241][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3676.670246][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3676.670249][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3676.670253][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3676.670256][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3676.670260][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3676.670262][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3676.670265][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3676.670268][ C3] ? xas_alloc (lib/xarray.c:378) [ 3676.670273][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3676.670278][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3676.670281][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3676.670285][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3676.670290][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3676.670294][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3676.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670304][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3676.670310][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3676.670316][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670319][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3676.670322][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3676.670326][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3676.670329][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3676.670332][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3676.670338][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3676.670340][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3676.670343][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3676.670348][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3676.670353][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3676.670356][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3676.670359][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3676.670362][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670366][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3676.670370][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3676.670375][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3676.670378][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3676.670383][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3676.670387][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670391][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3676.670396][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3676.670400][ C3] handle_softirqs (kernel/softirq.c:579) [ 3676.670406][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3676.670410][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3676.670414][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3676.670418][ C3] [ 3676.670419][ C3] [ 3676.670421][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3676.670426][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3676.670430][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3676.670433][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3676.670436][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3676.670438][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3676.670440][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3676.670442][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3676.670444][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3676.670448][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3676.670454][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3676.670459][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3676.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 3676.670467][ C3] ? xas_alloc (lib/xarray.c:378) [ 3676.670470][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3676.670474][ C3] ? xas_alloc (lib/xarray.c:378) [ 3676.670477][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3676.670482][ C3] xas_alloc (lib/xarray.c:378) [ 3676.670487][ C3] xas_create (lib/xarray.c:685) [ 3676.670493][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3676.670498][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3676.670501][ C3] __xa_store (lib/xarray.c:1703) [ 3676.670506][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3676.670510][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3676.670513][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3676.670517][ C3] ? xa_store (lib/xarray.c:1734) [ 3676.670521][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3676.670525][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3676.670528][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3676.670533][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3676.670536][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3676.670539][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670543][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3676.670547][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3676.670552][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3676.670556][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3676.670560][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3676.670564][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3676.670569][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3676.670577][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3676.670581][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3676.670587][ C3] ksys_unshare (kernel/fork.c:3121) [ 3676.670591][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3676.670594][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3676.670598][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3676.670600][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3676.670604][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3676.670610][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3676.670614][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3676.670619][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3676.670623][ C3] RIP: 0033:0x7f439756d93b [ 3676.670627][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3676.670630][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3676.670633][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3676.670635][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3676.670637][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3676.670639][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3676.670640][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3680.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3680.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3680.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3680.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3680.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3680.656139][ C0] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3680.656144][ C0] Code: ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 <49> 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e All code ======== 0: ff (bad) 1: ff (bad) 2: 7f ff jg 0x3 4: ff 48 39 decl 0x39(%rax) 7: c7 (bad) 8: 76 dd jbe 0xffffffffffffffe7 a: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 f: 48 89 fd mov %rdi,%rbp 12: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 19: fc ff df 1c: 4d 89 d1 mov %r10,%r9 1f: 48 c1 ed 03 shr $0x3,%rbp 23: 49 c1 e9 03 shr $0x3,%r9 27: 48 01 c5 add %rax,%rbp 2a:* 49 01 c1 add %rax,%r9 <-- trapping instruction 2d: 48 89 e8 mov %rbp,%rax 30: 49 8d 59 01 lea 0x1(%r9),%rbx 34: 48 89 da mov %rbx,%rdx 37: 48 29 ea sub %rbp,%rdx 3a: 48 83 fa 10 cmp $0x10,%rdx 3e: 0f .byte 0xf 3f: 8e .byte 0x8e Code starting with the faulting instruction =========================================== 0: 49 01 c1 add %rax,%r9 3: 48 89 e8 mov %rbp,%rax 6: 49 8d 59 01 lea 0x1(%r9),%rbx a: 48 89 da mov %rbx,%rdx d: 48 29 ea sub %rbp,%rdx 10: 48 83 fa 10 cmp $0x10,%rdx 14: 0f .byte 0xf 15: 8e .byte 0x8e [ 3680.656147][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 3680.656150][ C0] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3680.656152][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3680.656154][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: 1ffffffff77dcb80 [ 3680.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3680.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3680.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3680.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3680.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3680.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3680.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3680.656172][ C0] PKRU: 55555554 [ 3680.656173][ C0] Call Trace: [ 3680.656174][ C0] [ 3680.656176][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3680.656181][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3680.656185][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3680.656188][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3680.656191][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3680.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3680.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3680.656202][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3680.656205][ C0] ? xa_store (lib/xarray.c:1734) [ 3680.656210][ C0] xa_store (lib/xarray.c:1734) [ 3680.656214][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3680.656217][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3680.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3680.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3680.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3680.656233][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3680.656236][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3680.656242][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3680.656245][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3680.656250][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3680.656254][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3680.656258][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3680.656265][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3680.656268][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3680.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 3680.656277][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3680.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3680.656284][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3680.656287][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3680.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3680.656296][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3680.656300][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3680.656304][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3680.656307][ C0] RIP: 0033:0x7f439756d93b [ 3680.656311][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3680.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3680.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3680.656318][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3680.656320][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3680.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3680.656324][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3684.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3684.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3684.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3684.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3684.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3684.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3684.669144][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3684.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3684.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3684.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3684.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3684.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3684.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3684.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3684.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3684.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3684.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3684.669168][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3684.669170][ C2] PKRU: 55555554 [ 3684.669172][ C2] Call Trace: [ 3684.669173][ C2] [ 3684.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3684.669179][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3684.669183][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3684.669186][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3684.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3684.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3684.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3684.669200][ C2] ? xa_store (lib/xarray.c:1734) [ 3684.669206][ C2] xa_store (lib/xarray.c:1734) [ 3684.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3684.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3684.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3684.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3684.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3684.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3684.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3684.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3684.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3684.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3684.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3684.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3684.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3684.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3684.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3684.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3684.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3684.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3684.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3684.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3684.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3684.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3684.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3684.669303][ C2] RIP: 0033:0x7f439756d93b [ 3684.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3684.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3684.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3684.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3684.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3684.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3684.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3700.548566][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3700.549013][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3700.549264][ C1] NMI backtrace for cpu 1 | [ 3700.549275][ C1] Tainted: [L]=SOFTLOCKUP [ 3700.549276][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3700.549279][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3700.549284][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 3700.549287][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3700.549290][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3700.549292][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3700.549294][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3700.549296][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3700.549298][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3700.549301][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3700.549303][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3700.549307][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3700.549309][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3700.549310][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3700.549312][ C1] PKRU: 55555554 [ 3700.549314][ C1] Call Trace: [ 3700.549315][ C1] [ 3700.549317][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3700.549321][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3700.549325][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3700.549328][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3700.549333][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3700.549336][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3700.549339][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3700.549341][ C1] ? xa_store (lib/xarray.c:1734) [ 3700.549346][ C1] xa_store (lib/xarray.c:1734) [ 3700.549350][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3700.549354][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3700.549358][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3700.549361][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3700.549364][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.549369][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.549372][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3700.549377][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3700.549381][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3700.549385][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3700.549389][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3700.549393][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3700.549399][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3700.549403][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3700.549407][ C1] ksys_unshare (kernel/fork.c:3121) [ 3700.549412][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3700.549415][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3700.549419][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3700.549422][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3700.549426][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3700.549431][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3700.549435][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3700.549439][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3700.549442][ C1] RIP: 0033:0x7f439756d93b [ 3700.549445][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3700.549448][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3700.549450][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3700.549453][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3700.549454][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3700.549456][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3700.549458][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3700.549456][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3700.549458][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3700.549464][ C1] | [ 3700.550271][ C3] Tainted: [L]=SOFTLOCKUP [ 3700.550272][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3700.550274][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 3700.550280][ C3] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 3700.550283][ C3] RSP: 0018:ffffc90000270a30 EFLAGS: 00000282 [ 3700.550287][ C3] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3700.550289][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3700.550291][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3700.550293][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3700.550295][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3700.550297][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3700.550300][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3700.550304][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3700.550307][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3700.550308][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3700.550310][ C3] PKRU: 55555554 [ 3700.550312][ C3] Call Trace: [ 3700.550313][ C3] [ 3700.550315][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3700.550319][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3700.550323][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3700.550327][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3700.550330][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3700.550334][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3700.550338][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3700.550342][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3700.550346][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3700.550349][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3700.550352][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3700.550354][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3700.550357][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3700.550360][ C3] ? xas_alloc (lib/xarray.c:378) [ 3700.550365][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3700.550368][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3700.550371][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3700.550374][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3700.550380][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3700.550383][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3700.550389][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550392][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3700.550398][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3700.550403][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550406][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3700.550409][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3700.550413][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3700.550416][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3700.550419][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3700.550424][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3700.550427][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3700.550431][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3700.550435][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3700.550439][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3700.550442][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3700.550445][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3700.550449][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550452][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3700.550457][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3700.550461][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3700.550464][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3700.550468][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3700.550472][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550476][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3700.550481][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3700.550484][ C3] handle_softirqs (kernel/softirq.c:579) [ 3700.550490][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3700.550493][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3700.550496][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3700.550500][ C3] [ 3700.550501][ C3] [ 3700.550503][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3700.550507][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3700.550510][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3700.550513][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3700.550515][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3700.550517][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3700.550519][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3700.550521][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3700.550524][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3700.550528][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3700.550534][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3700.550539][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3700.550542][ C3] ? xas_alloc (lib/xarray.c:378) [ 3700.550547][ C3] ? xas_alloc (lib/xarray.c:378) [ 3700.550550][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3700.550553][ C3] ? xas_alloc (lib/xarray.c:378) [ 3700.550556][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3700.550561][ C3] xas_alloc (lib/xarray.c:378) [ 3700.550565][ C3] xas_create (lib/xarray.c:685) [ 3700.550571][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3700.550575][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3700.550579][ C3] __xa_store (lib/xarray.c:1703) [ 3700.550583][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3700.550588][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3700.550590][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3700.550593][ C3] ? xa_store (lib/xarray.c:1734) [ 3700.550598][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3700.550602][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3700.550605][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3700.550609][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3700.550612][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3700.550615][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550619][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3700.550622][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3700.550627][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3700.550631][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3700.550635][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3700.550639][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3700.550643][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3700.550649][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3700.550653][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3700.550658][ C3] ksys_unshare (kernel/fork.c:3121) [ 3700.550663][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3700.550666][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3700.550669][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3700.550672][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3700.550675][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3700.550681][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3700.550685][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3700.550689][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3700.550692][ C3] RIP: 0033:0x7f439756d93b [ 3700.550697][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3700.550699][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3700.550702][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3700.550704][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3700.550706][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3700.550707][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3700.550709][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3708.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3708.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3708.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3708.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3708.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3708.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3708.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3708.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3708.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3708.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3708.656156][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3708.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3708.656160][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3708.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3708.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3708.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3708.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3708.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3708.656173][ C0] PKRU: 55555554 [ 3708.656174][ C0] Call Trace: [ 3708.656175][ C0] [ 3708.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3708.656182][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3708.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3708.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3708.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3708.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3708.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3708.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3708.656207][ C0] xa_store (lib/xarray.c:1734) [ 3708.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3708.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3708.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3708.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3708.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3708.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3708.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3708.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3708.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3708.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3708.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3708.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3708.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3708.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3708.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 3708.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3708.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3708.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3708.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3708.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3708.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3708.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3708.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3708.656303][ C0] RIP: 0033:0x7f439756d93b [ 3708.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3708.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3708.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3708.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3708.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3708.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3708.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3712.669130][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3712.669135][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3712.669138][ C2] softirqs last disabled at (0): 0x0 | [ 3712.669147][ C2] Tainted: [L]=SOFTLOCKUP [ 3712.669148][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3712.669150][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3712.669154][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3712.669158][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3712.669160][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3712.669162][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3712.669164][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3712.669166][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3712.669168][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3712.669171][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3712.669173][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3712.669176][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3712.669178][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3712.669180][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3712.669182][ C2] PKRU: 55555554 [ 3712.669183][ C2] Call Trace: [ 3712.669185][ C2] [ 3712.669187][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3712.669190][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3712.669194][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3712.669197][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3712.669202][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3712.669205][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3712.669208][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3712.669210][ C2] ? xa_store (lib/xarray.c:1734) [ 3712.669215][ C2] xa_store (lib/xarray.c:1734) [ 3712.669220][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3712.669223][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3712.669228][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3712.669231][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3712.669234][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3712.669238][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3712.669242][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3712.669247][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3712.669251][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3712.669256][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3712.669260][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3712.669264][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3712.669270][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3712.669273][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3712.669277][ C2] ksys_unshare (kernel/fork.c:3121) [ 3712.669282][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3712.669285][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3712.669290][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3712.669292][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3712.669296][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3712.669301][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3712.669305][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3712.669309][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3712.669312][ C2] RIP: 0033:0x7f439756d93b [ 3712.669315][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3712.669318][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3712.669320][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3712.669322][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3712.669324][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3712.669326][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3712.669328][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3724.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3724.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3724.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3724.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 3724.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3724.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3724.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3724.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3724.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3724.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3724.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3724.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3724.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3724.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3724.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3724.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3724.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3724.669172][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3724.669173][ C1] PKRU: 55555554 [ 3724.669174][ C1] Call Trace: [ 3724.669176][ C1] [ 3724.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3724.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3724.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3724.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3724.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3724.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3724.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3724.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 3724.669207][ C1] xa_store (lib/xarray.c:1734) [ 3724.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3724.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3724.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3724.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3724.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3724.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3724.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3724.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3724.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3724.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3724.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3724.669264][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3724.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 3724.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3724.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3724.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3724.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3724.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3724.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3724.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3724.669299][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3724.669303][ C1] RIP: 0033:0x7f439756d93b [ 3724.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3724.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3724.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3724.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3724.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3724.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3724.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3724.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3724.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3724.670147][ C3] softirqs last disabled at (0): 0x0 | [ 3724.670159][ C3] Tainted: [L]=SOFTLOCKUP [ 3724.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3724.670163][ C3] RIP: 0010:kasan_check_range (mm/kasan/generic.c:89 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3724.670169][ C3] Code: 11 80 38 00 74 ef 4d 8d 1c 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 <48> 83 c0 01 48 39 d0 74 a5 80 38 00 74 f2 e9 74 ff ff ff b8 01 00 All code ======== 0: 11 80 38 00 74 ef adc %eax,-0x108bffc8(%rax) 6: 4d 8d 1c 2c lea (%r12,%rbp,1),%r11 a: 48 89 c2 mov %rax,%rdx d: 48 85 c0 test %rax,%rax 10: 75 b0 jne 0xffffffffffffffc2 12: 48 89 da mov %rbx,%rdx 15: 4c 89 d8 mov %r11,%rax 18: 4c 29 da sub %r11,%rdx 1b: e9 49 ff ff ff jmp 0xffffffffffffff69 20: 48 85 d2 test %rdx,%rdx 23: 74 b3 je 0xffffffffffffffd8 25: 48 01 ea add %rbp,%rdx 28: eb 09 jmp 0x33 2a:* 48 83 c0 01 add $0x1,%rax <-- trapping instruction 2e: 48 39 d0 cmp %rdx,%rax 31: 74 a5 je 0xffffffffffffffd8 33: 80 38 00 cmpb $0x0,(%rax) 36: 74 f2 je 0x2a 38: e9 74 ff ff ff jmp 0xffffffffffffffb1 3d: b8 .byte 0xb8 3e: 01 00 add %eax,(%rax) Code starting with the faulting instruction =========================================== 0: 48 83 c0 01 add $0x1,%rax 4: 48 39 d0 cmp %rdx,%rax 7: 74 a5 je 0xffffffffffffffae 9: 80 38 00 cmpb $0x0,(%rax) c: 74 f2 je 0x0 e: e9 74 ff ff ff jmp 0xffffffffffffff87 13: b8 .byte 0xb8 14: 01 00 add %eax,(%rax) [ 3724.670172][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000246 [ 3724.670175][ C3] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3724.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3724.670179][ C3] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3724.670181][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3724.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3724.670185][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3724.670188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3724.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3724.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3724.670195][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3724.670197][ C3] PKRU: 55555554 [ 3724.670198][ C3] Call Trace: [ 3724.670202][ C3] [ 3724.670205][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3724.670212][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3724.670216][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3724.670221][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3724.670224][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3724.670228][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3724.670233][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3724.670236][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3724.670240][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3724.670244][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3724.670247][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3724.670250][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3724.670253][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3724.670255][ C3] ? xas_alloc (lib/xarray.c:378) [ 3724.670261][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3724.670266][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3724.670269][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3724.670273][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3724.670278][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3724.670282][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3724.670288][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670293][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3724.670299][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3724.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670307][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3724.670310][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3724.670314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3724.670317][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3724.670320][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3724.670326][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3724.670329][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3724.670332][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3724.670336][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3724.670340][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3724.670344][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3724.670346][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3724.670350][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670353][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3724.670357][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3724.670362][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3724.670365][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3724.670370][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3724.670374][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670377][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3724.670382][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3724.670387][ C3] handle_softirqs (kernel/softirq.c:579) [ 3724.670393][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3724.670396][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3724.670400][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3724.670404][ C3] [ 3724.670405][ C3] [ 3724.670407][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3724.670412][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3724.670415][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3724.670418][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3724.670421][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3724.670424][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3724.670425][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3724.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3724.670429][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3724.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3724.670439][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3724.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3724.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 3724.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 3724.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3724.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3724.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3724.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3724.670472][ C3] xas_create (lib/xarray.c:685) [ 3724.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3724.670482][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3724.670486][ C3] __xa_store (lib/xarray.c:1703) [ 3724.670490][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3724.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3724.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3724.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3724.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3724.670509][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3724.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3724.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3724.670521][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3724.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3724.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3724.670537][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3724.670540][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3724.670545][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3724.670549][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3724.670553][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3724.670561][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3724.670565][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3724.670570][ C3] ksys_unshare (kernel/fork.c:3121) [ 3724.670575][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3724.670578][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3724.670582][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3724.670584][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3724.670588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3724.670595][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3724.670598][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3724.670604][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3724.670607][ C3] RIP: 0033:0x7f439756d93b [ 3724.670611][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3724.670614][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3724.670617][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3724.670620][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3724.670622][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3724.670624][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3724.670626][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3736.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3736.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3736.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3736.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3736.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3736.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3736.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3736.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3736.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3736.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3736.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3736.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3736.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3736.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3736.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3736.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3736.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3736.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3736.656172][ C0] PKRU: 55555554 [ 3736.656173][ C0] Call Trace: [ 3736.656174][ C0] [ 3736.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3736.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3736.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3736.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3736.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3736.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3736.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3736.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3736.656206][ C0] xa_store (lib/xarray.c:1734) [ 3736.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3736.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3736.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3736.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3736.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3736.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3736.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3736.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3736.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3736.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3736.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3736.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3736.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3736.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3736.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 3736.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3736.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3736.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3736.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3736.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3736.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3736.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3736.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3736.656303][ C0] RIP: 0033:0x7f439756d93b [ 3736.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3736.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3736.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3736.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3736.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3736.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3736.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3740.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3740.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3740.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3740.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3740.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3740.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3740.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3740.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3740.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3740.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3740.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3740.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3740.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3740.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3740.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3740.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3740.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3740.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3740.669171][ C2] PKRU: 55555554 [ 3740.669172][ C2] Call Trace: [ 3740.669174][ C2] [ 3740.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3740.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3740.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3740.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3740.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3740.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3740.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3740.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 3740.669207][ C2] xa_store (lib/xarray.c:1734) [ 3740.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3740.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3740.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3740.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3740.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3740.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3740.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3740.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3740.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3740.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3740.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3740.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3740.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3740.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3740.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 3740.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3740.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3740.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3740.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3740.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3740.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3740.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3740.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3740.669303][ C2] RIP: 0033:0x7f439756d93b [ 3740.669306][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3740.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3740.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3740.669313][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3740.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3740.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3740.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3752.669121][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3752.669126][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3752.669130][ C1] softirqs last disabled at (0): 0x0 | [ 3752.669139][ C1] Tainted: [L]=SOFTLOCKUP [ 3752.669140][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3752.669142][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3752.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3752.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3752.669152][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3752.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3752.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3752.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3752.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3752.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3752.669165][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3752.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3752.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3752.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3752.669173][ C1] PKRU: 55555554 [ 3752.669174][ C1] Call Trace: [ 3752.669176][ C1] [ 3752.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3752.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3752.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3752.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3752.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3752.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3752.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3752.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 3752.669208][ C1] xa_store (lib/xarray.c:1734) [ 3752.669212][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3752.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3752.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3752.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3752.669226][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.669231][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.669234][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3752.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3752.669243][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3752.669248][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3752.669252][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3752.669256][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3752.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3752.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3752.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 3752.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3752.669279][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3752.669283][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3752.669286][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3752.669289][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3752.669294][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3752.669298][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3752.669302][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3752.669305][ C1] RIP: 0033:0x7f439756d93b [ 3752.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3752.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3752.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3752.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3752.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3752.669319][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3752.669321][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3752.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3752.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3752.670164][ C3] softirqs last disabled at (0): 0x0 | [ 3752.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 3752.670177][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3752.670179][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3752.670187][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3752.670190][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3752.670193][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3752.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3752.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3752.670200][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3752.670202][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3752.670204][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3752.670206][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3752.670211][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3752.670213][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3752.670214][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3752.670216][ C3] PKRU: 55555554 [ 3752.670218][ C3] Call Trace: [ 3752.670222][ C3] [ 3752.670224][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3752.670229][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3752.670235][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3752.670238][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3752.670243][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3752.670248][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3752.670252][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3752.670256][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3752.670259][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3752.670262][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3752.670265][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3752.670268][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3752.670270][ C3] ? xas_alloc (lib/xarray.c:378) [ 3752.670276][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3752.670280][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3752.670283][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3752.670287][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3752.670292][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3752.670296][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3752.670302][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670307][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3752.670313][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3752.670318][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670321][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3752.670324][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3752.670328][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3752.670331][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3752.670334][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3752.670339][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3752.670342][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3752.670345][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3752.670350][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3752.670355][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3752.670358][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3752.670361][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3752.670364][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670368][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3752.670372][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3752.670377][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3752.670380][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3752.670385][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3752.670389][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670393][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3752.670398][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3752.670403][ C3] handle_softirqs (kernel/softirq.c:579) [ 3752.670409][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3752.670413][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3752.670416][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3752.670420][ C3] [ 3752.670422][ C3] [ 3752.670423][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3752.670429][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3752.670432][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3752.670435][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3752.670438][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3752.670441][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3752.670442][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3752.670444][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3752.670446][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3752.670450][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3752.670456][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3752.670462][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3752.670466][ C3] ? xas_alloc (lib/xarray.c:378) [ 3752.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 3752.670473][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3752.670478][ C3] ? xas_alloc (lib/xarray.c:378) [ 3752.670480][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3752.670485][ C3] xas_alloc (lib/xarray.c:378) [ 3752.670490][ C3] xas_create (lib/xarray.c:685) [ 3752.670496][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3752.670500][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3752.670504][ C3] __xa_store (lib/xarray.c:1703) [ 3752.670508][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3752.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3752.670515][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3752.670519][ C3] ? xa_store (lib/xarray.c:1734) [ 3752.670523][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3752.670527][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3752.670530][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3752.670535][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3752.670538][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3752.670541][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670545][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3752.670548][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3752.670553][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3752.670557][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3752.670562][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3752.670566][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3752.670570][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3752.670578][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3752.670582][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3752.670587][ C3] ksys_unshare (kernel/fork.c:3121) [ 3752.670592][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3752.670595][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3752.670599][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3752.670602][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3752.670606][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3752.670612][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3752.670616][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3752.670621][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3752.670625][ C3] RIP: 0033:0x7f439756d93b [ 3752.670629][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3752.670632][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3752.670635][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3752.670637][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3752.670640][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3752.670642][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3752.670644][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3764.656136][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3764.656146][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3764.656150][ C0] softirqs last disabled at (0): 0x0 | [ 3764.656162][ C0] Tainted: [L]=SOFTLOCKUP [ 3764.656164][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3764.656166][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:87 mm/kasan/generic.c:104 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3764.656173][ C0] Code: 2c 48 89 c2 48 85 c0 75 b0 48 89 da 4c 89 d8 4c 29 da e9 49 ff ff ff 48 85 d2 74 b3 48 01 ea eb 09 48 83 c0 01 48 39 d0 74 a5 <80> 38 00 74 f2 e9 74 ff ff ff b8 01 00 00 00 e9 cb 80 38 02 48 29 All code ======== 0: 2c 48 sub $0x48,%al 2: 89 c2 mov %eax,%edx 4: 48 85 c0 test %rax,%rax 7: 75 b0 jne 0xffffffffffffffb9 9: 48 89 da mov %rbx,%rdx c: 4c 89 d8 mov %r11,%rax f: 4c 29 da sub %r11,%rdx 12: e9 49 ff ff ff jmp 0xffffffffffffff60 17: 48 85 d2 test %rdx,%rdx 1a: 74 b3 je 0xffffffffffffffcf 1c: 48 01 ea add %rbp,%rdx 1f: eb 09 jmp 0x2a 21: 48 83 c0 01 add $0x1,%rax 25: 48 39 d0 cmp %rdx,%rax 28: 74 a5 je 0xffffffffffffffcf 2a:* 80 38 00 cmpb $0x0,(%rax) <-- trapping instruction 2d: 74 f2 je 0x21 2f: e9 74 ff ff ff jmp 0xffffffffffffffa8 34: b8 01 00 00 00 mov $0x1,%eax 39: e9 cb 80 38 02 jmp 0x2388109 3e: 48 rex.W 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 80 38 00 cmpb $0x0,(%rax) 3: 74 f2 je 0xfffffffffffffff7 5: e9 74 ff ff ff jmp 0xffffffffffffff7e a: b8 01 00 00 00 mov $0x1,%eax f: e9 cb 80 38 02 jmp 0x23880df 14: 48 rex.W 15: 29 .byte 0x29 [ 3764.656177][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000286 [ 3764.656180][ C0] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 3764.656183][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3764.656185][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3764.656187][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3764.656189][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3764.656191][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3764.656194][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3764.656198][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3764.656200][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3764.656201][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3764.656203][ C0] PKRU: 55555554 [ 3764.656204][ C0] Call Trace: [ 3764.656208][ C0] [ 3764.656213][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3764.656222][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3764.656225][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3764.656230][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3764.656235][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3764.656242][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3764.656246][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3764.656248][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3764.656251][ C0] ? xa_store (lib/xarray.c:1734) [ 3764.656258][ C0] xa_store (lib/xarray.c:1734) [ 3764.656263][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3764.656269][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3764.656274][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3764.656277][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3764.656280][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3764.656287][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3764.656290][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3764.656298][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3764.656302][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3764.656307][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3764.656313][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3764.656317][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3764.656327][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3764.656331][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3764.656337][ C0] ksys_unshare (kernel/fork.c:3121) [ 3764.656342][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3764.656345][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3764.656350][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3764.656354][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3764.656357][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3764.656364][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3764.656369][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3764.656374][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3764.656380][ C0] RIP: 0033:0x7f439756d93b [ 3764.656385][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3764.656388][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3764.656391][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3764.656393][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3764.656395][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3764.656397][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3764.656399][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3768.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3768.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3768.669130][ C2] softirqs last disabled at (0): 0x0 | [ 3768.669139][ C2] Tainted: [L]=SOFTLOCKUP [ 3768.669141][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3768.669143][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3768.669148][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3768.669151][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3768.669153][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3768.669155][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3768.669157][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3768.669159][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3768.669161][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3768.669164][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3768.669166][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3768.669169][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3768.669172][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3768.669173][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3768.669175][ C2] PKRU: 55555554 [ 3768.669176][ C2] Call Trace: [ 3768.669178][ C2] [ 3768.669181][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3768.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3768.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3768.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3768.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3768.669200][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3768.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3768.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 3768.669210][ C2] xa_store (lib/xarray.c:1734) [ 3768.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3768.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3768.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3768.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3768.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3768.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3768.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3768.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3768.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3768.669251][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3768.669255][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3768.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3768.669266][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3768.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3768.669274][ C2] ksys_unshare (kernel/fork.c:3121) [ 3768.669278][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3768.669282][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3768.669285][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3768.669288][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3768.669292][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3768.669297][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3768.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3768.669305][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3768.669308][ C2] RIP: 0033:0x7f439756d93b [ 3768.669312][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3768.669314][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3768.669318][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3768.669320][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3768.669321][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3768.669323][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3768.669325][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3778.562684][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3778.562960][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3778.563356][ C1] NMI backtrace for cpu 1 | [ 3778.563367][ C1] Tainted: [L]=SOFTLOCKUP [ 3778.563369][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3778.563371][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3778.563377][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3778.563380][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3778.563383][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3778.563385][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3778.563387][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3778.563390][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3778.563392][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3778.563394][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3778.563396][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3778.563400][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3778.563402][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3778.563403][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3778.563405][ C1] PKRU: 55555554 [ 3778.563406][ C1] Call Trace: [ 3778.563408][ C1] [ 3778.563410][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3778.563414][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3778.563417][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3778.563421][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3778.563426][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3778.563429][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3778.563432][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3778.563435][ C1] ? xa_store (lib/xarray.c:1734) [ 3778.563440][ C1] xa_store (lib/xarray.c:1734) [ 3778.563444][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3778.563448][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3778.563453][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3778.563455][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3778.563458][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.563463][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.563466][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3778.563472][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3778.563476][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3778.563480][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3778.563484][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3778.563488][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3778.563495][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3778.563498][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3778.563503][ C1] ksys_unshare (kernel/fork.c:3121) [ 3778.563507][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3778.563510][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3778.563514][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3778.563517][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3778.563521][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3778.563526][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3778.563529][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3778.563533][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3778.563536][ C1] RIP: 0033:0x7f439756d93b [ 3778.563540][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3778.563542][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3778.563545][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3778.563548][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3778.563549][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3778.563551][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3778.563553][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3778.563551][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3778.563553][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3778.563559][ C1] | [ 3778.564360][ C3] Tainted: [L]=SOFTLOCKUP [ 3778.564362][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3778.564364][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3778.564369][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3778.564372][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3778.564376][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3778.564378][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3778.564380][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3778.564382][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3778.564384][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3778.564386][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3778.564389][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3778.564393][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3778.564395][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3778.564397][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3778.564399][ C3] PKRU: 55555554 [ 3778.564400][ C3] Call Trace: [ 3778.564402][ C3] [ 3778.564403][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3778.564408][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3778.564412][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3778.564415][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3778.564419][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3778.564424][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3778.564427][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3778.564431][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3778.564434][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3778.564437][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3778.564440][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3778.564443][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3778.564446][ C3] ? xas_alloc (lib/xarray.c:378) [ 3778.564451][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3778.564455][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3778.564458][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3778.564461][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3778.564466][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3778.564470][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3778.564475][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564479][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3778.564485][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3778.564489][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564492][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3778.564495][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3778.564498][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3778.564502][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3778.564504][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3778.564511][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3778.564513][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3778.564517][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3778.564521][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3778.564525][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3778.564529][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3778.564531][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3778.564535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564539][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3778.564543][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3778.564547][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3778.564550][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3778.564555][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3778.564559][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564563][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3778.564567][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3778.564572][ C3] handle_softirqs (kernel/softirq.c:579) [ 3778.564577][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3778.564580][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3778.564583][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3778.564587][ C3] [ 3778.564588][ C3] [ 3778.564589][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3778.564593][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3778.564596][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3778.564599][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3778.564601][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3778.564603][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3778.564605][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3778.564606][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3778.564608][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3778.564612][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3778.564617][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3778.564623][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3778.564626][ C3] ? xas_alloc (lib/xarray.c:378) [ 3778.564630][ C3] ? xas_alloc (lib/xarray.c:378) [ 3778.564633][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3778.564637][ C3] ? xas_alloc (lib/xarray.c:378) [ 3778.564640][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3778.564644][ C3] xas_alloc (lib/xarray.c:378) [ 3778.564649][ C3] xas_create (lib/xarray.c:685) [ 3778.564654][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3778.564659][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3778.564662][ C3] __xa_store (lib/xarray.c:1703) [ 3778.564666][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3778.564671][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3778.564673][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3778.564676][ C3] ? xa_store (lib/xarray.c:1734) [ 3778.564681][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3778.564685][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3778.564688][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3778.564693][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3778.564696][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3778.564698][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564702][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3778.564705][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3778.564710][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3778.564714][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3778.564718][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3778.564722][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3778.564727][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3778.564733][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3778.564736][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3778.564742][ C3] ksys_unshare (kernel/fork.c:3121) [ 3778.564746][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3778.564750][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3778.564753][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3778.564756][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3778.564759][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3778.564765][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3778.564769][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3778.564774][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3778.564776][ C3] RIP: 0033:0x7f439756d93b [ 3778.564781][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3778.564783][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3778.564786][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3778.564788][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3778.564790][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3778.564791][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3778.564793][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3792.656123][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3792.656128][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3792.656131][ C0] softirqs last disabled at (0): 0x0 | [ 3792.656140][ C0] Tainted: [L]=SOFTLOCKUP [ 3792.656141][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3792.656143][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:188) [ 3792.656147][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 <53> 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 66 0f 1f 00 nopw (%rax) 14: 48 85 f6 test %rsi,%rsi 17: 0f 84 5e 01 00 00 je 0x17b 1d: 48 89 f8 mov %rdi,%rax 20: 41 54 push %r12 22: 44 0f b6 c2 movzbl %dl,%r8d 26: 48 01 f0 add %rsi,%rax 29: 55 push %rbp 2a:* 53 push %rbx <-- trapping instruction 2b: 72 14 jb 0x41 2d: eb 26 jmp 0x55 2f: cc int3 30: cc int3 31: cc int3 32: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 39: ff ff fe 3c: 48 39 c7 cmp %rax,%rdi 3f: 77 .byte 0x77 Code starting with the faulting instruction =========================================== 0: 53 push %rbx 1: 72 14 jb 0x17 3: eb 26 jmp 0x2b 5: cc int3 6: cc int3 7: cc int3 8: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax f: ff ff fe 12: 48 39 c7 cmp %rax,%rdi 15: 77 .byte 0x77 [ 3792.656150][ C0] RSP: 0018:ffffc900034c7a00 EFLAGS: 00000282 [ 3792.656153][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3792.656155][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3792.656157][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3792.656159][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3792.656161][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3792.656163][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3792.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3792.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3792.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3792.656172][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3792.656174][ C0] PKRU: 55555554 [ 3792.656175][ C0] Call Trace: [ 3792.656176][ C0] [ 3792.656178][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3792.656183][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3792.656187][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3792.656190][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3792.656193][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3792.656198][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3792.656201][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3792.656203][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3792.656206][ C0] ? xa_store (lib/xarray.c:1734) [ 3792.656211][ C0] xa_store (lib/xarray.c:1734) [ 3792.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3792.656219][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3792.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3792.656227][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3792.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3792.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3792.656238][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3792.656243][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3792.656247][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3792.656252][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3792.656256][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3792.656260][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3792.656266][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3792.656270][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3792.656274][ C0] ksys_unshare (kernel/fork.c:3121) [ 3792.656279][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3792.656282][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3792.656286][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3792.656289][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3792.656292][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3792.656297][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3792.656301][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3792.656306][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3792.656309][ C0] RIP: 0033:0x7f439756d93b [ 3792.656312][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3792.656315][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3792.656318][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3792.656320][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3792.656322][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3792.656324][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3792.656326][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3796.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3796.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3796.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3796.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3796.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3796.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3796.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3796.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3796.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3796.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3796.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3796.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3796.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3796.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3796.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3796.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3796.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3796.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3796.669173][ C2] PKRU: 55555554 [ 3796.669175][ C2] Call Trace: [ 3796.669176][ C2] [ 3796.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3796.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3796.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3796.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3796.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3796.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3796.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3796.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 3796.669209][ C2] xa_store (lib/xarray.c:1734) [ 3796.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3796.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3796.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3796.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3796.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3796.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3796.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3796.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3796.669245][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3796.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3796.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3796.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3796.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3796.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3796.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 3796.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3796.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3796.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3796.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3796.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3796.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3796.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3796.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3796.669306][ C2] RIP: 0033:0x7f439756d93b [ 3796.669309][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3796.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3796.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3796.669317][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3796.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3796.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3796.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3804.669121][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3804.669126][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3804.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3804.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 3804.669140][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3804.669142][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3804.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3804.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3804.669152][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3804.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3804.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3804.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3804.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3804.669163][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3804.669165][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3804.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3804.669171][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3804.669172][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3804.669174][ C1] PKRU: 55555554 [ 3804.669175][ C1] Call Trace: [ 3804.669177][ C1] [ 3804.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3804.669183][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3804.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3804.669190][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3804.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3804.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3804.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3804.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 3804.669208][ C1] xa_store (lib/xarray.c:1734) [ 3804.669212][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3804.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3804.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3804.669224][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3804.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.669231][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.669235][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3804.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3804.669244][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3804.669248][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3804.669253][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3804.669257][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3804.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3804.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3804.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 3804.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3804.669279][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3804.669283][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3804.669286][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3804.669289][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3804.669295][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3804.669299][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3804.669303][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3804.669305][ C1] RIP: 0033:0x7f439756d93b [ 3804.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3804.669311][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3804.669314][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3804.669316][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3804.669318][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3804.669320][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3804.669322][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3804.670152][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3804.670160][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3804.670164][ C3] softirqs last disabled at (0): 0x0 | [ 3804.670176][ C3] Tainted: [L]=SOFTLOCKUP [ 3804.670178][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3804.670180][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3804.670188][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3804.670191][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3804.670194][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3804.670196][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3804.670198][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3804.670201][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3804.670203][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3804.670205][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3804.670207][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3804.670211][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3804.670213][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3804.670215][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3804.670217][ C3] PKRU: 55555554 [ 3804.670218][ C3] Call Trace: [ 3804.670222][ C3] [ 3804.670224][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3804.670229][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3804.670235][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3804.670238][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3804.670244][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3804.670248][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3804.670252][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3804.670256][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3804.670259][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3804.670263][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3804.670266][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3804.670268][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3804.670271][ C3] ? xas_alloc (lib/xarray.c:378) [ 3804.670277][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3804.670283][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3804.670286][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3804.670290][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3804.670296][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3804.670300][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3804.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670310][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3804.670316][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3804.670323][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670326][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3804.670329][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3804.670332][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3804.670335][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3804.670338][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3804.670344][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3804.670347][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3804.670350][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3804.670355][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3804.670359][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3804.670363][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3804.670365][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3804.670369][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670372][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3804.670377][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3804.670382][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3804.670385][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3804.670390][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3804.670394][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670397][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3804.670402][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3804.670407][ C3] handle_softirqs (kernel/softirq.c:579) [ 3804.670413][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3804.670416][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3804.670420][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3804.670424][ C3] [ 3804.670425][ C3] [ 3804.670427][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3804.670432][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3804.670435][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3804.670438][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3804.670441][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3804.670444][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3804.670446][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3804.670447][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3804.670449][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3804.670453][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3804.670459][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3804.670465][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3804.670469][ C3] ? xas_alloc (lib/xarray.c:378) [ 3804.670473][ C3] ? xas_alloc (lib/xarray.c:378) [ 3804.670476][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3804.670480][ C3] ? xas_alloc (lib/xarray.c:378) [ 3804.670483][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3804.670488][ C3] xas_alloc (lib/xarray.c:378) [ 3804.670493][ C3] xas_create (lib/xarray.c:685) [ 3804.670499][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3804.670503][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3804.670507][ C3] __xa_store (lib/xarray.c:1703) [ 3804.670511][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3804.670516][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3804.670519][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3804.670522][ C3] ? xa_store (lib/xarray.c:1734) [ 3804.670527][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3804.670530][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3804.670534][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3804.670539][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3804.670542][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3804.670545][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670549][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3804.670552][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3804.670557][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3804.670561][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3804.670566][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3804.670570][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3804.670575][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3804.670583][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3804.670587][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3804.670593][ C3] ksys_unshare (kernel/fork.c:3121) [ 3804.670597][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3804.670601][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3804.670605][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3804.670607][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3804.670611][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3804.670617][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3804.670621][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3804.670626][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3804.670630][ C3] RIP: 0033:0x7f439756d93b [ 3804.670633][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3804.670636][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3804.670639][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3804.670641][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3804.670644][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3804.670646][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3804.670648][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3820.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3820.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3820.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3820.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 3820.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3820.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3820.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3820.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3820.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3820.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3820.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3820.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3820.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3820.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3820.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3820.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3820.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3820.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3820.656171][ C0] PKRU: 55555554 [ 3820.656172][ C0] Call Trace: [ 3820.656173][ C0] [ 3820.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3820.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3820.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3820.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3820.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3820.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3820.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3820.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 3820.656206][ C0] xa_store (lib/xarray.c:1734) [ 3820.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3820.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3820.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3820.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3820.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3820.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3820.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3820.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3820.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3820.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3820.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3820.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3820.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3820.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3820.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 3820.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3820.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3820.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3820.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3820.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3820.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3820.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3820.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3820.656302][ C0] RIP: 0033:0x7f439756d93b [ 3820.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3820.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3820.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3820.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3820.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3820.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3820.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3824.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3824.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3824.669129][ C2] softirqs last disabled at (0): 0x0 | [ 3824.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 3824.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3824.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3824.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3824.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3824.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3824.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3824.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3824.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3824.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3824.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3824.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3824.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3824.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3824.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3824.669173][ C2] PKRU: 55555554 [ 3824.669174][ C2] Call Trace: [ 3824.669176][ C2] [ 3824.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3824.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3824.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3824.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3824.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3824.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3824.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3824.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 3824.669208][ C2] xa_store (lib/xarray.c:1734) [ 3824.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3824.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3824.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3824.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3824.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3824.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3824.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3824.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3824.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3824.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3824.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3824.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3824.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3824.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3824.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 3824.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3824.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3824.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3824.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3824.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3824.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3824.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3824.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3824.669305][ C2] RIP: 0033:0x7f439756d93b [ 3824.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3824.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3824.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3824.669317][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3824.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3824.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3824.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3832.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3832.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3832.669128][ C1] softirqs last disabled at (0): 0x0 | [ 3832.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 3832.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3832.669140][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 3832.669144][ C1] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 3832.669147][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000246 [ 3832.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3832.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3832.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3832.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3832.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3832.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3832.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3832.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3832.669167][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3832.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3832.669171][ C1] PKRU: 55555554 [ 3832.669172][ C1] Call Trace: [ 3832.669174][ C1] [ 3832.669175][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3832.669180][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3832.669184][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3832.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3832.669191][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3832.669195][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3832.669198][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3832.669201][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3832.669204][ C1] ? xa_store (lib/xarray.c:1734) [ 3832.669209][ C1] xa_store (lib/xarray.c:1734) [ 3832.669213][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3832.669217][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3832.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3832.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3832.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.669232][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.669235][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3832.669241][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3832.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3832.669249][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3832.669253][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3832.669257][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3832.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3832.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3832.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 3832.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3832.669279][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3832.669283][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3832.669285][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3832.669289][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3832.669294][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3832.669298][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3832.669302][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3832.669305][ C1] RIP: 0033:0x7f439756d93b [ 3832.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3832.669311][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3832.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3832.669316][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3832.669318][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3832.669319][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3832.669321][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3832.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3832.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3832.670146][ C3] softirqs last disabled at (0): 0x0 | [ 3832.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 3832.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3832.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3832.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3832.670172][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3832.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3832.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3832.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3832.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3832.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3832.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3832.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3832.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3832.670194][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3832.670196][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3832.670198][ C3] PKRU: 55555554 [ 3832.670199][ C3] Call Trace: [ 3832.670203][ C3] [ 3832.670204][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3832.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3832.670215][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3832.670219][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3832.670224][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3832.670229][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3832.670232][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3832.670236][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3832.670240][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3832.670243][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3832.670246][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3832.670248][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3832.670251][ C3] ? xas_alloc (lib/xarray.c:378) [ 3832.670257][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3832.670261][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3832.670264][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3832.670268][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3832.670273][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3832.670278][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3832.670283][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670288][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3832.670294][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3832.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3832.670306][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3832.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3832.670313][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3832.670316][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3832.670322][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3832.670325][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3832.670328][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3832.670332][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3832.670337][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3832.670340][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3832.670343][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3832.670347][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670351][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3832.670355][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3832.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3832.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3832.670368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3832.670372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670376][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3832.670380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3832.670385][ C3] handle_softirqs (kernel/softirq.c:579) [ 3832.670391][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3832.670395][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3832.670398][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3832.670403][ C3] [ 3832.670404][ C3] [ 3832.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3832.670411][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3832.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3832.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3832.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3832.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3832.670425][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3832.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3832.670429][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3832.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3832.670439][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3832.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3832.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 3832.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 3832.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3832.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 3832.670463][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3832.670468][ C3] xas_alloc (lib/xarray.c:378) [ 3832.670473][ C3] xas_create (lib/xarray.c:685) [ 3832.670479][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3832.670483][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3832.670487][ C3] __xa_store (lib/xarray.c:1703) [ 3832.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3832.670496][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3832.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3832.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3832.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3832.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3832.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3832.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3832.670522][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3832.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670529][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3832.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3832.670537][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3832.670541][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3832.670546][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3832.670550][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3832.670555][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3832.670563][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3832.670567][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3832.670572][ C3] ksys_unshare (kernel/fork.c:3121) [ 3832.670577][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3832.670580][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3832.670584][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3832.670587][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3832.670590][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3832.670597][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3832.670600][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3832.670606][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3832.670609][ C3] RIP: 0033:0x7f439756d93b [ 3832.670613][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3832.670616][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3832.670620][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3832.670622][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3832.670624][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3832.670626][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3832.670628][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3848.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3848.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3848.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3848.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3848.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3848.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3848.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3848.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3848.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3848.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3848.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3848.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3848.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3848.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3848.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3848.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3848.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3848.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3848.656172][ C0] PKRU: 55555554 [ 3848.656173][ C0] Call Trace: [ 3848.656175][ C0] [ 3848.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3848.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3848.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3848.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3848.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3848.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3848.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3848.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3848.656207][ C0] xa_store (lib/xarray.c:1734) [ 3848.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3848.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3848.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3848.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3848.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3848.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3848.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3848.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3848.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3848.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3848.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3848.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3848.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3848.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3848.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3848.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3848.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3848.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3848.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3848.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3848.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3848.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3848.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3848.656303][ C0] RIP: 0033:0x7f439756d93b [ 3848.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3848.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3848.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3848.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3848.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3848.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3848.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3852.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3852.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3852.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3852.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3852.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3852.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3852.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3852.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3852.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3852.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3852.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3852.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3852.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3852.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3852.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3852.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3852.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3852.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3852.669171][ C2] PKRU: 55555554 [ 3852.669172][ C2] Call Trace: [ 3852.669174][ C2] [ 3852.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3852.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3852.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3852.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3852.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3852.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3852.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3852.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3852.669206][ C2] xa_store (lib/xarray.c:1734) [ 3852.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3852.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3852.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3852.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3852.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3852.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3852.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3852.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3852.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3852.669245][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3852.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3852.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3852.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3852.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3852.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3852.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3852.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3852.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3852.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3852.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3852.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3852.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3852.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3852.669303][ C2] RIP: 0033:0x7f439756d93b [ 3852.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3852.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3852.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3852.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3852.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3852.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3852.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3856.576858][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3856.577134][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3856.577535][ C1] NMI backtrace for cpu 1 | [ 3856.577546][ C1] Tainted: [L]=SOFTLOCKUP [ 3856.577547][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3856.577550][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3856.577555][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3856.577559][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3856.577562][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3856.577564][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3856.577566][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3856.577568][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3856.577570][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3856.577572][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3856.577574][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3856.577577][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3856.577579][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3856.577580][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3856.577582][ C1] PKRU: 55555554 [ 3856.577583][ C1] Call Trace: [ 3856.577585][ C1] [ 3856.577587][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3856.577591][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3856.577594][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3856.577597][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3856.577602][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3856.577605][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3856.577608][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3856.577611][ C1] ? xa_store (lib/xarray.c:1734) [ 3856.577616][ C1] xa_store (lib/xarray.c:1734) [ 3856.577620][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3856.577623][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3856.577628][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3856.577631][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3856.577634][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.577638][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.577641][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3856.577646][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3856.577650][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3856.577655][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3856.577659][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3856.577663][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3856.577669][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3856.577673][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3856.577677][ C1] ksys_unshare (kernel/fork.c:3121) [ 3856.577682][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3856.577685][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3856.577688][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3856.577692][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3856.577695][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3856.577700][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3856.577703][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3856.577708][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3856.577711][ C1] RIP: 0033:0x7f439756d93b [ 3856.577714][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3856.577716][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3856.577719][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3856.577721][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3856.577723][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3856.577725][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3856.577727][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3856.577725][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3856.577727][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3856.577732][ C1] | [ 3856.578542][ C3] Tainted: [L]=SOFTLOCKUP [ 3856.578544][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3856.578546][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3856.578552][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3856.578555][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3856.578558][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3856.578561][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3856.578563][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3856.578565][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3856.578567][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3856.578569][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3856.578572][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3856.578576][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3856.578579][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3856.578581][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3856.578583][ C3] PKRU: 55555554 [ 3856.578584][ C3] Call Trace: [ 3856.578586][ C3] [ 3856.578587][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3856.578593][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3856.578597][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3856.578601][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3856.578604][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3856.578609][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3856.578612][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3856.578616][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3856.578619][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3856.578622][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3856.578624][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3856.578627][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3856.578630][ C3] ? xas_alloc (lib/xarray.c:378) [ 3856.578636][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3856.578639][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3856.578642][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3856.578645][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3856.578651][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3856.578655][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3856.578660][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578664][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3856.578670][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3856.578675][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578678][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3856.578681][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3856.578684][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3856.578688][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3856.578690][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3856.578696][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3856.578699][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3856.578702][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3856.578707][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3856.578711][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3856.578715][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3856.578717][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3856.578721][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578725][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3856.578729][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3856.578733][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3856.578736][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3856.578741][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3856.578745][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578748][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3856.578753][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3856.578757][ C3] handle_softirqs (kernel/softirq.c:579) [ 3856.578763][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3856.578766][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3856.578769][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3856.578772][ C3] [ 3856.578773][ C3] [ 3856.578775][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3856.578779][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3856.578782][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3856.578784][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3856.578787][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3856.578789][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3856.578790][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3856.578792][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3856.578794][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3856.578799][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3856.578804][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3856.578809][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3856.578813][ C3] ? xas_alloc (lib/xarray.c:378) [ 3856.578818][ C3] ? xas_alloc (lib/xarray.c:378) [ 3856.578821][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3856.578825][ C3] ? xas_alloc (lib/xarray.c:378) [ 3856.578827][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3856.578833][ C3] xas_alloc (lib/xarray.c:378) [ 3856.578837][ C3] xas_create (lib/xarray.c:685) [ 3856.578843][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3856.578848][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3856.578851][ C3] __xa_store (lib/xarray.c:1703) [ 3856.578855][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3856.578860][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3856.578863][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3856.578866][ C3] ? xa_store (lib/xarray.c:1734) [ 3856.578870][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3856.578874][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3856.578877][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3856.578882][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3856.578885][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3856.578887][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578891][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3856.578894][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3856.578899][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3856.578903][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3856.578907][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3856.578911][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3856.578915][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3856.578922][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3856.578925][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3856.578930][ C3] ksys_unshare (kernel/fork.c:3121) [ 3856.578935][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3856.578939][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3856.578942][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3856.578945][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3856.578948][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3856.578954][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3856.578958][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3856.578963][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3856.578965][ C3] RIP: 0033:0x7f439756d93b [ 3856.578970][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3856.578973][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3856.578975][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3856.578977][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3856.578979][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3856.578980][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3856.578982][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3876.656118][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3876.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3876.656126][ C0] softirqs last disabled at (0): 0x0 | [ 3876.656135][ C0] Tainted: [L]=SOFTLOCKUP [ 3876.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3876.656138][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3876.656143][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3876.656146][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3876.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3876.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3876.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3876.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3876.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3876.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3876.656161][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3876.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3876.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3876.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3876.656170][ C0] PKRU: 55555554 [ 3876.656171][ C0] Call Trace: [ 3876.656173][ C0] [ 3876.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3876.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3876.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3876.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3876.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3876.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3876.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3876.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 3876.656206][ C0] xa_store (lib/xarray.c:1734) [ 3876.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3876.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3876.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3876.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3876.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3876.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3876.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3876.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3876.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3876.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3876.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3876.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3876.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3876.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3876.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 3876.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3876.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3876.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3876.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3876.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3876.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3876.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3876.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3876.656302][ C0] RIP: 0033:0x7f439756d93b [ 3876.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3876.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3876.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3876.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3876.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3876.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3876.656318][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3880.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3880.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3880.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3880.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3880.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3880.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3880.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3880.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3880.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3880.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3880.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3880.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3880.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3880.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3880.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3880.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3880.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3880.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3880.669171][ C2] PKRU: 55555554 [ 3880.669173][ C2] Call Trace: [ 3880.669175][ C2] [ 3880.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3880.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3880.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3880.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3880.669206][ C2] xa_store (lib/xarray.c:1734) [ 3880.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3880.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3880.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3880.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3880.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3880.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3880.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3880.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3880.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3880.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3880.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3880.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3880.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3880.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3880.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3880.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3880.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3880.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3880.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3880.669302][ C2] RIP: 0033:0x7f439756d93b [ 3880.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3880.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3880.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3880.669313][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3880.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3880.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3880.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3880.669346][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3880.669351][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3880.669355][ C1] softirqs last disabled at (0): 0x0 | [ 3880.669364][ C1] Tainted: [L]=SOFTLOCKUP [ 3880.669365][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3880.669367][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3880.669372][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3880.669375][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3880.669378][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3880.669380][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3880.669382][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3880.669383][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3880.669386][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3880.669387][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3880.669390][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3880.669393][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3880.669395][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3880.669396][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3880.669398][ C1] PKRU: 55555554 [ 3880.669399][ C1] Call Trace: [ 3880.669401][ C1] [ 3880.669403][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3880.669406][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.669410][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.669413][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3880.669418][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3880.669422][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.669425][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.669428][ C1] ? xa_store (lib/xarray.c:1734) [ 3880.669433][ C1] xa_store (lib/xarray.c:1734) [ 3880.669437][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3880.669441][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3880.669446][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.669449][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.669451][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.669456][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.669459][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3880.669464][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3880.669468][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3880.669473][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3880.669477][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3880.669481][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3880.669488][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3880.669492][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3880.669496][ C1] ksys_unshare (kernel/fork.c:3121) [ 3880.669500][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3880.669503][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3880.669507][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3880.669510][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3880.669513][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3880.669518][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3880.669522][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3880.669526][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3880.669529][ C1] RIP: 0033:0x7f439756d93b [ 3880.669532][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3880.669535][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3880.669538][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3880.669539][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3880.669541][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3880.669543][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3880.669545][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3880.670135][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3880.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3880.670147][ C3] softirqs last disabled at (0): 0x0 | [ 3880.670160][ C3] Tainted: [L]=SOFTLOCKUP [ 3880.670161][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3880.670164][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3880.670172][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3880.670176][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3880.670179][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3880.670182][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3880.670184][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3880.670186][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3880.670188][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3880.670190][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3880.670193][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3880.670197][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3880.670199][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3880.670201][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3880.670203][ C3] PKRU: 55555554 [ 3880.670204][ C3] Call Trace: [ 3880.670208][ C3] [ 3880.670210][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3880.670216][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3880.670221][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3880.670225][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3880.670230][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3880.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3880.670238][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3880.670243][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3880.670246][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3880.670249][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3880.670252][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3880.670255][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3880.670258][ C3] ? xas_alloc (lib/xarray.c:378) [ 3880.670263][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3880.670268][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.670271][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3880.670280][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3880.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3880.670290][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670295][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3880.670302][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3880.670308][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670311][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3880.670314][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3880.670317][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3880.670321][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3880.670324][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3880.670330][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3880.670333][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3880.670336][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3880.670341][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3880.670345][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3880.670349][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3880.670352][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3880.670356][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670359][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3880.670364][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3880.670369][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3880.670372][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3880.670377][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3880.670381][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670385][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3880.670389][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3880.670394][ C3] handle_softirqs (kernel/softirq.c:579) [ 3880.670400][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3880.670404][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3880.670408][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3880.670412][ C3] [ 3880.670413][ C3] [ 3880.670415][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3880.670420][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3880.670424][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3880.670427][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3880.670430][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3880.670432][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3880.670434][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3880.670436][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3880.670439][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3880.670443][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3880.670449][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3880.670455][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3880.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 3880.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 3880.670466][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3880.670470][ C3] ? xas_alloc (lib/xarray.c:378) [ 3880.670473][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3880.670478][ C3] xas_alloc (lib/xarray.c:378) [ 3880.670482][ C3] xas_create (lib/xarray.c:685) [ 3880.670489][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3880.670493][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.670497][ C3] __xa_store (lib/xarray.c:1703) [ 3880.670501][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3880.670506][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.670509][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3880.670512][ C3] ? xa_store (lib/xarray.c:1734) [ 3880.670517][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3880.670521][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3880.670525][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3880.670530][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3880.670533][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3880.670536][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670540][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3880.670544][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3880.670548][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3880.670552][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3880.670557][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3880.670561][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3880.670566][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3880.670574][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3880.670578][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3880.670583][ C3] ksys_unshare (kernel/fork.c:3121) [ 3880.670588][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3880.670591][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3880.670595][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3880.670597][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3880.670601][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3880.670607][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3880.670611][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3880.670615][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3880.670619][ C3] RIP: 0033:0x7f439756d93b [ 3880.670624][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3880.670626][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3880.670629][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3880.670632][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3880.670634][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3880.670635][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3880.670637][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3904.656130][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3904.656138][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3904.656142][ C0] softirqs last disabled at (0): 0x0 | [ 3904.656152][ C0] Tainted: [L]=SOFTLOCKUP [ 3904.656154][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3904.656156][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3904.656163][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3904.656166][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3904.656169][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3904.656171][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3904.656174][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3904.656176][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3904.656177][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3904.656180][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3904.656182][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3904.656186][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3904.656188][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3904.656190][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3904.656191][ C0] PKRU: 55555554 [ 3904.656193][ C0] Call Trace: [ 3904.656197][ C0] [ 3904.656200][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3904.656204][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3904.656213][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3904.656217][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3904.656223][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3904.656226][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3904.656229][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3904.656232][ C0] ? xa_store (lib/xarray.c:1734) [ 3904.656238][ C0] xa_store (lib/xarray.c:1734) [ 3904.656242][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3904.656247][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3904.656252][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3904.656255][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3904.656258][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3904.656264][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3904.656268][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3904.656275][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3904.656279][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3904.656283][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3904.656288][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3904.656293][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3904.656301][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3904.656305][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3904.656311][ C0] ksys_unshare (kernel/fork.c:3121) [ 3904.656316][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3904.656319][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3904.656324][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3904.656327][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3904.656330][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3904.656337][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3904.656341][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3904.656346][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3904.656350][ C0] RIP: 0033:0x7f439756d93b [ 3904.656354][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3904.656356][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3904.656359][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3904.656361][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3904.656363][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3904.656365][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3904.656367][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3908.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3908.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3908.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3908.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3908.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3908.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3908.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3908.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3908.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3908.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3908.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3908.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3908.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3908.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3908.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3908.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3908.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3908.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3908.669171][ C2] PKRU: 55555554 [ 3908.669172][ C2] Call Trace: [ 3908.669174][ C2] [ 3908.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3908.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3908.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3908.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 3908.669208][ C2] xa_store (lib/xarray.c:1734) [ 3908.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3908.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3908.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3908.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3908.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3908.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3908.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3908.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3908.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3908.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3908.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 3908.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3908.669280][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3908.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3908.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3908.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3908.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3908.669299][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3908.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3908.669307][ C2] RIP: 0033:0x7f439756d93b [ 3908.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3908.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3908.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3908.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3908.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3908.669322][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3908.669324][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3908.669349][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3908.669354][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3908.669358][ C1] softirqs last disabled at (0): 0x0 | [ 3908.669367][ C1] Tainted: [L]=SOFTLOCKUP [ 3908.669368][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3908.669370][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3908.669374][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3908.669377][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3908.669380][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3908.669382][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3908.669384][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3908.669386][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3908.669388][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3908.669390][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3908.669392][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3908.669396][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3908.669398][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3908.669400][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3908.669402][ C1] PKRU: 55555554 [ 3908.669403][ C1] Call Trace: [ 3908.669405][ C1] [ 3908.669408][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3908.669411][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.669415][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.669418][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3908.669423][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3908.669426][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.669429][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.669432][ C1] ? xa_store (lib/xarray.c:1734) [ 3908.669438][ C1] xa_store (lib/xarray.c:1734) [ 3908.669442][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3908.669446][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3908.669451][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.669453][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.669456][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.669461][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.669464][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3908.669470][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3908.669474][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3908.669478][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3908.669482][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3908.669486][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3908.669493][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3908.669496][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3908.669500][ C1] ksys_unshare (kernel/fork.c:3121) [ 3908.669505][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3908.669508][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3908.669512][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3908.669515][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3908.669518][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3908.669523][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3908.669527][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3908.669532][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3908.669535][ C1] RIP: 0033:0x7f439756d93b [ 3908.669538][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3908.669540][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3908.669543][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3908.669545][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3908.669547][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3908.669549][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3908.669550][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3908.670153][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3908.670162][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3908.670166][ C3] softirqs last disabled at (0): 0x0 | [ 3908.670178][ C3] Tainted: [L]=SOFTLOCKUP [ 3908.670180][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3908.670183][ C3] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3908.670188][ C3] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 3908.670192][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000212 [ 3908.670196][ C3] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3908.670198][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3908.670200][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3908.670202][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3908.670204][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3908.670206][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3908.670209][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3908.670214][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3908.670216][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3908.670217][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3908.670219][ C3] PKRU: 55555554 [ 3908.670220][ C3] Call Trace: [ 3908.670224][ C3] [ 3908.670228][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3908.670235][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3908.670240][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3908.670244][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3908.670247][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3908.670252][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3908.670257][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3908.670260][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3908.670264][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3908.670268][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3908.670271][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3908.670274][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3908.670277][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3908.670280][ C3] ? xas_alloc (lib/xarray.c:378) [ 3908.670286][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3908.670292][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.670294][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.670298][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3908.670304][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3908.670308][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3908.670314][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670319][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3908.670325][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3908.670331][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670334][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3908.670338][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3908.670341][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3908.670345][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3908.670348][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3908.670354][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3908.670357][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3908.670360][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3908.670365][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3908.670369][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3908.670373][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3908.670375][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3908.670379][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670383][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3908.670388][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3908.670393][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3908.670396][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3908.670401][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3908.670406][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670409][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3908.670414][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3908.670418][ C3] handle_softirqs (kernel/softirq.c:579) [ 3908.670424][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3908.670429][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3908.670432][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3908.670436][ C3] [ 3908.670437][ C3] [ 3908.670439][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3908.670444][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3908.670447][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3908.670450][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3908.670454][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3908.670456][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3908.670458][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3908.670460][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3908.670462][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3908.670467][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3908.670473][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3908.670479][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3908.670483][ C3] ? xas_alloc (lib/xarray.c:378) [ 3908.670487][ C3] ? xas_alloc (lib/xarray.c:378) [ 3908.670490][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3908.670495][ C3] ? xas_alloc (lib/xarray.c:378) [ 3908.670498][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3908.670504][ C3] xas_alloc (lib/xarray.c:378) [ 3908.670508][ C3] xas_create (lib/xarray.c:685) [ 3908.670515][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3908.670519][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.670523][ C3] __xa_store (lib/xarray.c:1703) [ 3908.670527][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3908.670532][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.670534][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3908.670537][ C3] ? xa_store (lib/xarray.c:1734) [ 3908.670542][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3908.670546][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3908.670549][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3908.670554][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3908.670557][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3908.670560][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670564][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3908.670567][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3908.670572][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3908.670575][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3908.670580][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3908.670584][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3908.670589][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3908.670597][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3908.670601][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3908.670606][ C3] ksys_unshare (kernel/fork.c:3121) [ 3908.670611][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3908.670614][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3908.670618][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3908.670620][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3908.670624][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3908.670630][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3908.670634][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3908.670639][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3908.670642][ C3] RIP: 0033:0x7f439756d93b [ 3908.670646][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3908.670649][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3908.670652][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3908.670654][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3908.670656][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3908.670657][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3908.670659][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3932.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3932.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3932.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3932.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3932.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3932.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3932.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3932.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3932.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3932.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3932.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3932.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3932.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3932.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3932.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3932.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3932.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3932.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3932.656171][ C0] PKRU: 55555554 [ 3932.656172][ C0] Call Trace: [ 3932.656174][ C0] [ 3932.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3932.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3932.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3932.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3932.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3932.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3932.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3932.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 3932.656206][ C0] xa_store (lib/xarray.c:1734) [ 3932.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3932.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3932.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3932.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3932.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3932.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3932.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3932.656237][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3932.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3932.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3932.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3932.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3932.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3932.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3932.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 3932.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3932.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3932.656280][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3932.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3932.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3932.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3932.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3932.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3932.656303][ C0] RIP: 0033:0x7f439756d93b [ 3932.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3932.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3932.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3932.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3932.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3932.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3932.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3934.589894][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 3934.590171][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 3934.590409][ C1] NMI backtrace for cpu 1 | [ 3934.590419][ C1] Tainted: [L]=SOFTLOCKUP [ 3934.590421][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3934.590423][ C1] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 3934.590428][ C1] Code: 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 <48> 01 f0 55 53 72 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe All code ======== 0: 0f 1f 40 00 nopl 0x0(%rax) 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 66 0f 1f 00 nopw (%rax) 18: 48 85 f6 test %rsi,%rsi 1b: 0f 84 5e 01 00 00 je 0x17f 21: 48 89 f8 mov %rdi,%rax 24: 41 54 push %r12 26: 44 0f b6 c2 movzbl %dl,%r8d 2a:* 48 01 f0 add %rsi,%rax <-- trapping instruction 2d: 55 push %rbp 2e: 53 push %rbx 2f: 72 14 jb 0x45 31: eb 26 jmp 0x59 33: cc int3 34: cc int3 35: cc int3 36: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 3d: ff ff fe Code starting with the faulting instruction =========================================== 0: 48 01 f0 add %rsi,%rax 3: 55 push %rbp 4: 53 push %rbx 5: 72 14 jb 0x1b 7: eb 26 jmp 0x2f 9: cc int3 a: cc int3 b: cc int3 c: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 13: ff ff fe [ 3934.590431][ C1] RSP: 0018:ffffc900034b7a08 EFLAGS: 00000202 [ 3934.590434][ C1] RAX: ffffffffbbee5c00 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3934.590436][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3934.590438][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3934.590440][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3934.590442][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3934.590444][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3934.590447][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3934.590450][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3934.590451][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3934.590453][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3934.590455][ C1] PKRU: 55555554 [ 3934.590456][ C1] Call Trace: [ 3934.590457][ C1] [ 3934.590458][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3934.590463][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3934.590467][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3934.590470][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3934.590473][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3934.590478][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3934.590481][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3934.590483][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3934.590486][ C1] ? xa_store (lib/xarray.c:1734) [ 3934.590491][ C1] xa_store (lib/xarray.c:1734) [ 3934.590495][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3934.590498][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3934.590503][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3934.590506][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3934.590508][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.590513][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.590516][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3934.590521][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3934.590525][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3934.590529][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3934.590533][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3934.590537][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3934.590543][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3934.590547][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3934.590551][ C1] ksys_unshare (kernel/fork.c:3121) [ 3934.590555][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3934.590558][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3934.590561][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3934.590564][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3934.590568][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3934.590573][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3934.590576][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3934.590581][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3934.590584][ C1] RIP: 0033:0x7f439756d93b [ 3934.590587][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3934.590589][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3934.590592][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3934.590594][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3934.590596][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3934.590598][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3934.590599][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3934.590598][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 3934.590599][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3934.590605][ C1] | [ 3934.591415][ C3] Tainted: [L]=SOFTLOCKUP [ 3934.591416][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3934.591418][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3934.591423][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3934.591426][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3934.591430][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3934.591432][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3934.591434][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3934.591436][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3934.591438][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3934.591440][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3934.591443][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3934.591447][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3934.591449][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3934.591450][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3934.591452][ C3] PKRU: 55555554 [ 3934.591454][ C3] Call Trace: [ 3934.591455][ C3] [ 3934.591457][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3934.591462][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3934.591466][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3934.591469][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3934.591472][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3934.591477][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3934.591480][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3934.591484][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3934.591487][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3934.591490][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3934.591493][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3934.591496][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3934.591499][ C3] ? xas_alloc (lib/xarray.c:378) [ 3934.591504][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3934.591507][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3934.591510][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3934.591513][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3934.591518][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3934.591522][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3934.591527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591531][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3934.591537][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3934.591542][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591545][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3934.591548][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3934.591551][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3934.591554][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3934.591557][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3934.591562][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3934.591565][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3934.591568][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3934.591572][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3934.591576][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3934.591579][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3934.591582][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3934.591586][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591589][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3934.591594][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3934.591598][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3934.591602][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3934.591607][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3934.591611][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591614][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3934.591619][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3934.591623][ C3] handle_softirqs (kernel/softirq.c:579) [ 3934.591629][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3934.591632][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3934.591635][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3934.591639][ C3] [ 3934.591640][ C3] [ 3934.591641][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3934.591645][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3934.591648][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3934.591651][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3934.591653][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3934.591655][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3934.591657][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3934.591659][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3934.591661][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3934.591665][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3934.591671][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3934.591676][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3934.591680][ C3] ? xas_alloc (lib/xarray.c:378) [ 3934.591684][ C3] ? xas_alloc (lib/xarray.c:378) [ 3934.591687][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3934.591691][ C3] ? xas_alloc (lib/xarray.c:378) [ 3934.591694][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3934.591699][ C3] xas_alloc (lib/xarray.c:378) [ 3934.591703][ C3] xas_create (lib/xarray.c:685) [ 3934.591709][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3934.591713][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3934.591717][ C3] __xa_store (lib/xarray.c:1703) [ 3934.591720][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3934.591726][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3934.591728][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3934.591731][ C3] ? xa_store (lib/xarray.c:1734) [ 3934.591736][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3934.591740][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3934.591743][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3934.591748][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3934.591751][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3934.591754][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591758][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3934.591761][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3934.591766][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3934.591770][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3934.591774][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3934.591778][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3934.591782][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3934.591789][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3934.591792][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3934.591798][ C3] ksys_unshare (kernel/fork.c:3121) [ 3934.591804][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3934.591807][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3934.591812][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3934.591814][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3934.591818][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3934.591824][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3934.591828][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3934.591832][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3934.591835][ C3] RIP: 0033:0x7f439756d93b [ 3934.591839][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3934.591842][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3934.591844][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3934.591846][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3934.591848][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3934.591850][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3934.591851][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3936.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3936.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3936.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3936.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 3936.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3936.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3936.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3936.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3936.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3936.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3936.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3936.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3936.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3936.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3936.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3936.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3936.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3936.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3936.669172][ C2] PKRU: 55555554 [ 3936.669173][ C2] Call Trace: [ 3936.669174][ C2] [ 3936.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3936.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3936.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3936.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3936.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3936.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3936.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3936.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 3936.669207][ C2] xa_store (lib/xarray.c:1734) [ 3936.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3936.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3936.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3936.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3936.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3936.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3936.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3936.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3936.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3936.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3936.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3936.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3936.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3936.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3936.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 3936.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3936.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3936.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3936.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3936.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3936.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3936.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3936.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3936.669303][ C2] RIP: 0033:0x7f439756d93b [ 3936.669306][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3936.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3936.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3936.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3936.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3936.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3936.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3960.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3960.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3960.656128][ C0] softirqs last disabled at (0): 0x0 | [ 3960.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 3960.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3960.656140][ C0] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3960.656144][ C0] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 3960.656147][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000212 [ 3960.656149][ C0] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3960.656152][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3960.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3960.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3960.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3960.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3960.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3960.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3960.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3960.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3960.656170][ C0] PKRU: 55555554 [ 3960.656172][ C0] Call Trace: [ 3960.656173][ C0] [ 3960.656176][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3960.656181][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3960.656184][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.656188][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.656191][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3960.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3960.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.656202][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.656205][ C0] ? xa_store (lib/xarray.c:1734) [ 3960.656210][ C0] xa_store (lib/xarray.c:1734) [ 3960.656214][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3960.656217][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3960.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.656236][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3960.656241][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3960.656245][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3960.656250][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3960.656254][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3960.656258][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3960.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3960.656268][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3960.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 3960.656277][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3960.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3960.656284][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3960.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3960.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3960.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3960.656299][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3960.656303][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3960.656306][ C0] RIP: 0033:0x7f439756d93b [ 3960.656310][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3960.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3960.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3960.656318][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3960.656320][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3960.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3960.656324][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3960.669121][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3960.669126][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3960.669129][ C1] softirqs last disabled at (0): 0x0 | [ 3960.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 3960.669140][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3960.669142][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3960.669147][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3960.669150][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3960.669152][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3960.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3960.669157][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3960.669159][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3960.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3960.669163][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3960.669165][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3960.669168][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3960.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3960.669172][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3960.669174][ C1] PKRU: 55555554 [ 3960.669175][ C1] Call Trace: [ 3960.669176][ C1] [ 3960.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3960.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3960.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3960.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 3960.669209][ C1] xa_store (lib/xarray.c:1734) [ 3960.669213][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3960.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3960.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.669224][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.669231][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.669234][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3960.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3960.669243][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3960.669248][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3960.669252][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3960.669257][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3960.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3960.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3960.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 3960.669275][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3960.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3960.669282][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3960.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3960.669288][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3960.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3960.669297][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3960.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3960.669304][ C1] RIP: 0033:0x7f439756d93b [ 3960.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3960.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3960.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3960.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3960.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3960.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3960.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3960.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3960.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3960.670146][ C3] softirqs last disabled at (0): 0x0 | [ 3960.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 3960.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3960.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3960.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3960.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3960.670177][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3960.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3960.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3960.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3960.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3960.670187][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3960.670190][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3960.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3960.670196][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3960.670198][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3960.670200][ C3] PKRU: 55555554 [ 3960.670201][ C3] Call Trace: [ 3960.670204][ C3] [ 3960.670206][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3960.670212][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3960.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3960.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3960.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3960.670231][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3960.670234][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3960.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3960.670241][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3960.670245][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3960.670247][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3960.670250][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3960.670252][ C3] ? xas_alloc (lib/xarray.c:378) [ 3960.670258][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3960.670263][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.670269][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3960.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3960.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3960.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670289][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3960.670296][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3960.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3960.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3960.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3960.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3960.670316][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3960.670322][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3960.670325][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3960.670328][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3960.670333][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3960.670337][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3960.670341][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3960.670343][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3960.670347][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670350][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3960.670355][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3960.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3960.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3960.670368][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3960.670372][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670375][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3960.670380][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3960.670384][ C3] handle_softirqs (kernel/softirq.c:579) [ 3960.670390][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3960.670394][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3960.670397][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3960.670401][ C3] [ 3960.670403][ C3] [ 3960.670404][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3960.670409][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3960.670413][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3960.670416][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3960.670418][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3960.670420][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3960.670423][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3960.670425][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3960.670427][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3960.670431][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3960.670437][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3960.670443][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3960.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 3960.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 3960.670454][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3960.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 3960.670461][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3960.670466][ C3] xas_alloc (lib/xarray.c:378) [ 3960.670471][ C3] xas_create (lib/xarray.c:685) [ 3960.670477][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3960.670481][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.670485][ C3] __xa_store (lib/xarray.c:1703) [ 3960.670489][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3960.670493][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.670496][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3960.670499][ C3] ? xa_store (lib/xarray.c:1734) [ 3960.670504][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3960.670507][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3960.670510][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3960.670515][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3960.670518][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3960.670521][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670525][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3960.670529][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3960.670533][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3960.670537][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3960.670542][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3960.670546][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3960.670550][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3960.670558][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3960.670562][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3960.670567][ C3] ksys_unshare (kernel/fork.c:3121) [ 3960.670571][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3960.670574][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3960.670578][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3960.670580][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3960.670584][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3960.670590][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3960.670593][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3960.670598][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3960.670602][ C3] RIP: 0033:0x7f439756d93b [ 3960.670606][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3960.670609][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3960.670612][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3960.670614][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3960.670616][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3960.670618][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3960.670619][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3964.669127][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3964.669135][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3964.669139][ C2] softirqs last disabled at (0): 0x0 | [ 3964.669149][ C2] Tainted: [L]=SOFTLOCKUP [ 3964.669151][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3964.669153][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3964.669158][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3964.669161][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 3964.669164][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3964.669166][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3964.669168][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3964.669170][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3964.669172][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3964.669174][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3964.669177][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3964.669180][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3964.669182][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3964.669184][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3964.669186][ C2] PKRU: 55555554 [ 3964.669187][ C2] Call Trace: [ 3964.669189][ C2] [ 3964.669192][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3964.669197][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3964.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3964.669204][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3964.669209][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3964.669212][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3964.669215][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3964.669218][ C2] ? xa_store (lib/xarray.c:1734) [ 3964.669223][ C2] xa_store (lib/xarray.c:1734) [ 3964.669227][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3964.669231][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3964.669236][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3964.669239][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3964.669242][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3964.669246][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3964.669250][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3964.669259][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3964.669263][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3964.669267][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3964.669271][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3964.669276][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3964.669282][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3964.669286][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3964.669290][ C2] ksys_unshare (kernel/fork.c:3121) [ 3964.669295][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3964.669298][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3964.669302][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3964.669305][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3964.669308][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3964.669313][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3964.669317][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3964.669321][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3964.669324][ C2] RIP: 0033:0x7f439756d93b [ 3964.669327][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3964.669330][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3964.669333][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3964.669335][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3964.669337][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3964.669339][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3964.669341][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3988.656121][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3988.656126][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3988.656130][ C0] softirqs last disabled at (0): 0x0 | [ 3988.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 3988.656140][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3988.656142][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3988.656147][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3988.656150][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 3988.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3988.656155][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3988.656157][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3988.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 3988.656161][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 3988.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 3988.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3988.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 3988.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3988.656172][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3988.656173][ C0] PKRU: 55555554 [ 3988.656174][ C0] Call Trace: [ 3988.656177][ C0] [ 3988.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3988.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.656187][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.656190][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3988.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3988.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.656202][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.656205][ C0] ? xa_store (lib/xarray.c:1734) [ 3988.656211][ C0] xa_store (lib/xarray.c:1734) [ 3988.656215][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3988.656218][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3988.656223][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.656226][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.656237][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3988.656243][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3988.656247][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3988.656252][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3988.656256][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 3988.656261][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 3988.656267][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3988.656271][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 3988.656275][ C0] ksys_unshare (kernel/fork.c:3121) [ 3988.656280][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3988.656283][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3988.656287][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3988.656289][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3988.656293][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3988.656298][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 3988.656302][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3988.656306][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3988.656310][ C0] RIP: 0033:0x7f439756d93b [ 3988.656313][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3988.656315][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3988.656318][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3988.656320][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3988.656322][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 3988.656324][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3988.656326][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 3988.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3988.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3988.669127][ C1] softirqs last disabled at (0): 0x0 | [ 3988.669136][ C1] Tainted: [L]=SOFTLOCKUP [ 3988.669137][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3988.669139][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3988.669144][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3988.669146][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 3988.669149][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3988.669151][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3988.669153][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3988.669155][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 3988.669157][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 3988.669159][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 3988.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3988.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 3988.669167][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3988.669168][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3988.669170][ C1] PKRU: 55555554 [ 3988.669171][ C1] Call Trace: [ 3988.669173][ C1] [ 3988.669175][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3988.669179][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.669183][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.669186][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3988.669191][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3988.669194][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.669197][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.669200][ C1] ? xa_store (lib/xarray.c:1734) [ 3988.669205][ C1] xa_store (lib/xarray.c:1734) [ 3988.669209][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3988.669212][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3988.669217][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.669223][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3988.669237][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3988.669241][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3988.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3988.669249][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 3988.669254][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 3988.669260][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3988.669264][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 3988.669268][ C1] ksys_unshare (kernel/fork.c:3121) [ 3988.669272][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3988.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3988.669279][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3988.669282][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3988.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3988.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 3988.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3988.669298][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3988.669301][ C1] RIP: 0033:0x7f439756d93b [ 3988.669304][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3988.669307][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3988.669309][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3988.669311][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3988.669313][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 3988.669315][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3988.669316][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 3988.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3988.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3988.670145][ C3] softirqs last disabled at (0): 0x0 | [ 3988.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 3988.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3988.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 3988.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 3988.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 3988.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3988.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3988.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3988.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 3988.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 3988.670187][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 3988.670190][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3988.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 3988.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3988.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3988.670198][ C3] PKRU: 55555554 [ 3988.670200][ C3] Call Trace: [ 3988.670204][ C3] [ 3988.670205][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 3988.670211][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 3988.670216][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3988.670219][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3988.670224][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3988.670228][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3988.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3988.670235][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3988.670239][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 3988.670242][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3988.670245][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3988.670247][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3988.670250][ C3] ? xas_alloc (lib/xarray.c:378) [ 3988.670256][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3988.670262][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.670265][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.670269][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3988.670274][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 3988.670278][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 3988.670283][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670287][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3988.670294][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 3988.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3988.670306][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 3988.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 3988.670313][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 3988.670316][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3988.670321][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3988.670324][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 3988.670327][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 3988.670332][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 3988.670336][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3988.670340][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 3988.670342][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 3988.670346][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670350][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3988.670354][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 3988.670359][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 3988.670362][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 3988.670367][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 3988.670371][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670374][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3988.670379][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 3988.670384][ C3] handle_softirqs (kernel/softirq.c:579) [ 3988.670390][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 3988.670394][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 3988.670397][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 3988.670401][ C3] [ 3988.670403][ C3] [ 3988.670404][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 3988.670410][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 3988.670413][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 3988.670416][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 3988.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 3988.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 3988.670424][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 3988.670426][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 3988.670428][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 3988.670432][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 3988.670437][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 3988.670443][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 3988.670447][ C3] ? xas_alloc (lib/xarray.c:378) [ 3988.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 3988.670454][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 3988.670458][ C3] ? xas_alloc (lib/xarray.c:378) [ 3988.670461][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 3988.670466][ C3] xas_alloc (lib/xarray.c:378) [ 3988.670471][ C3] xas_create (lib/xarray.c:685) [ 3988.670477][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 3988.670482][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.670486][ C3] __xa_store (lib/xarray.c:1703) [ 3988.670490][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 3988.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3988.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 3988.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 3988.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3988.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3988.670519][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3988.670522][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3988.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3988.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3988.670537][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3988.670540][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3988.670545][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3988.670549][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 3988.670554][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 3988.670561][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3988.670565][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 3988.670570][ C3] ksys_unshare (kernel/fork.c:3121) [ 3988.670575][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3988.670578][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3988.670581][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3988.670584][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3988.670587][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3988.670593][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 3988.670597][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3988.670602][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3988.670605][ C3] RIP: 0033:0x7f439756d93b [ 3988.670609][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3988.670612][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3988.670614][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3988.670616][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3988.670618][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3988.670620][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3988.670622][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 3992.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 3992.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 3992.669128][ C2] softirqs last disabled at (0): 0x0 | [ 3992.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 3992.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 3992.669140][ C2] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 3992.669144][ C2] Code: ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 <48> 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e c0 00 00 All code ======== 0: ff (bad) 1: ff 48 39 decl 0x39(%rax) 4: c7 (bad) 5: 76 dd jbe 0xffffffffffffffe4 7: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 c: 48 89 fd mov %rdi,%rbp f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 16: fc ff df 19: 4d 89 d1 mov %r10,%r9 1c: 48 c1 ed 03 shr $0x3,%rbp 20: 49 c1 e9 03 shr $0x3,%r9 24: 48 01 c5 add %rax,%rbp 27: 49 01 c1 add %rax,%r9 2a:* 48 89 e8 mov %rbp,%rax <-- trapping instruction 2d: 49 8d 59 01 lea 0x1(%r9),%rbx 31: 48 89 da mov %rbx,%rdx 34: 48 29 ea sub %rbp,%rdx 37: 48 83 fa 10 cmp $0x10,%rdx 3b: 0f .byte 0xf 3c: 8e c0 mov %eax,%es ... Code starting with the faulting instruction =========================================== 0: 48 89 e8 mov %rbp,%rax 3: 49 8d 59 01 lea 0x1(%r9),%rbx 7: 48 89 da mov %rbx,%rdx a: 48 29 ea sub %rbp,%rdx d: 48 83 fa 10 cmp $0x10,%rdx 11: 0f .byte 0xf 12: 8e c0 mov %eax,%es ... [ 3992.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 3992.669150][ C2] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 3992.669152][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 3992.669154][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 3992.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 3992.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 3992.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 3992.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 3992.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 3992.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 3992.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 3992.669171][ C2] PKRU: 55555554 [ 3992.669172][ C2] Call Trace: [ 3992.669174][ C2] [ 3992.669176][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 3992.669181][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 3992.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3992.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3992.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 3992.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 3992.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3992.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 3992.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 3992.669210][ C2] xa_store (lib/xarray.c:1734) [ 3992.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 3992.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 3992.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 3992.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 3992.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3992.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 3992.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 3992.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 3992.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 3992.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 3992.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 3992.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 3992.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 3992.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 3992.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 3992.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 3992.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 3992.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 3992.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 3992.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 3992.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 3992.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 3992.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 3992.669307][ C2] RIP: 0033:0x7f439756d93b [ 3992.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 3992.669312][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 3992.669315][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 3992.669317][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 3992.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 3992.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 3992.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4012.604479][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4012.604759][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4012.604997][ C1] NMI backtrace for cpu 1 | [ 4012.605007][ C1] Tainted: [L]=SOFTLOCKUP [ 4012.605008][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4012.605010][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4012.605015][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4012.605018][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4012.605021][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4012.605023][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4012.605025][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4012.605027][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4012.605029][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4012.605031][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4012.605033][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4012.605036][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4012.605038][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4012.605040][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4012.605041][ C1] PKRU: 55555554 [ 4012.605042][ C1] Call Trace: [ 4012.605044][ C1] [ 4012.605047][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4012.605050][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4012.605054][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4012.605057][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4012.605062][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4012.605065][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4012.605068][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4012.605070][ C1] ? xa_store (lib/xarray.c:1734) [ 4012.605075][ C1] xa_store (lib/xarray.c:1734) [ 4012.605079][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4012.605083][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4012.605087][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4012.605090][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4012.605093][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.605097][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.605101][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4012.605106][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4012.605110][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4012.605114][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4012.605118][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4012.605123][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4012.605130][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4012.605133][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4012.605137][ C1] ksys_unshare (kernel/fork.c:3121) [ 4012.605142][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4012.605145][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4012.605149][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4012.605152][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4012.605155][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4012.605160][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4012.605164][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4012.605168][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4012.605172][ C1] RIP: 0033:0x7f439756d93b [ 4012.605175][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4012.605178][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4012.605180][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4012.605182][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4012.605184][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4012.605186][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4012.605188][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4012.605186][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4012.605188][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4012.605194][ C1] | [ 4012.606003][ C3] Tainted: [L]=SOFTLOCKUP [ 4012.606005][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4012.606007][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4012.606012][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4012.606016][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4012.606019][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4012.606021][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4012.606023][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4012.606025][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4012.606027][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4012.606029][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4012.606032][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4012.606036][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4012.606038][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4012.606040][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4012.606042][ C3] PKRU: 55555554 [ 4012.606043][ C3] Call Trace: [ 4012.606045][ C3] [ 4012.606046][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4012.606051][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4012.606056][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4012.606059][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4012.606062][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4012.606067][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4012.606071][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4012.606075][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4012.606078][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4012.606081][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4012.606084][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4012.606086][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4012.606089][ C3] ? xas_alloc (lib/xarray.c:378) [ 4012.606095][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4012.606098][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4012.606101][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4012.606104][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4012.606109][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4012.606113][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4012.606118][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606122][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4012.606128][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4012.606133][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606136][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4012.606139][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4012.606142][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4012.606145][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4012.606148][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4012.606154][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4012.606157][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4012.606160][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4012.606164][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4012.606168][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4012.606171][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4012.606174][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4012.606177][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606181][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4012.606185][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4012.606189][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4012.606192][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4012.606197][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4012.606201][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606204][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4012.606209][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4012.606213][ C3] handle_softirqs (kernel/softirq.c:579) [ 4012.606218][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4012.606221][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4012.606225][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4012.606228][ C3] [ 4012.606229][ C3] [ 4012.606231][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4012.606235][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4012.606238][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4012.606240][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4012.606243][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4012.606245][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4012.606246][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4012.606248][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4012.606250][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4012.606254][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4012.606259][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4012.606264][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4012.606268][ C3] ? xas_alloc (lib/xarray.c:378) [ 4012.606272][ C3] ? xas_alloc (lib/xarray.c:378) [ 4012.606275][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4012.606279][ C3] ? xas_alloc (lib/xarray.c:378) [ 4012.606282][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4012.606286][ C3] xas_alloc (lib/xarray.c:378) [ 4012.606291][ C3] xas_create (lib/xarray.c:685) [ 4012.606296][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4012.606301][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4012.606304][ C3] __xa_store (lib/xarray.c:1703) [ 4012.606308][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4012.606313][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4012.606315][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4012.606318][ C3] ? xa_store (lib/xarray.c:1734) [ 4012.606323][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4012.606327][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4012.606330][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4012.606334][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4012.606337][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4012.606340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606344][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4012.606347][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4012.606352][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4012.606355][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4012.606360][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4012.606364][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4012.606368][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4012.606374][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4012.606378][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4012.606383][ C3] ksys_unshare (kernel/fork.c:3121) [ 4012.606388][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4012.606391][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4012.606395][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4012.606398][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4012.606401][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4012.606407][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4012.606411][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4012.606416][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4012.606419][ C3] RIP: 0033:0x7f439756d93b [ 4012.606423][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4012.606425][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4012.606428][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4012.606430][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4012.606432][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4012.606433][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4012.606435][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4016.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4016.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4016.656129][ C0] softirqs last disabled at (0): 0x0 | [ 4016.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 4016.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4016.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4016.656146][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4016.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4016.656152][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4016.656154][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4016.656156][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4016.656158][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4016.656160][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4016.656162][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4016.656165][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4016.656168][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4016.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4016.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4016.656173][ C0] PKRU: 55555554 [ 4016.656174][ C0] Call Trace: [ 4016.656175][ C0] [ 4016.656178][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4016.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4016.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4016.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4016.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4016.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4016.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4016.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 4016.656208][ C0] xa_store (lib/xarray.c:1734) [ 4016.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4016.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4016.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4016.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4016.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4016.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4016.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4016.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4016.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4016.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4016.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4016.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4016.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4016.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4016.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 4016.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4016.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4016.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4016.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4016.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4016.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4016.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4016.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4016.656304][ C0] RIP: 0033:0x7f439756d93b [ 4016.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4016.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4016.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4016.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4016.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4016.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4016.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4020.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4020.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4020.669127][ C2] softirqs last disabled at (0): 0x0 | [ 4020.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4020.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4020.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 4020.669143][ C2] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 4020.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 4020.669150][ C2] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4020.669152][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4020.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4020.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4020.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4020.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4020.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4020.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4020.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4020.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4020.669171][ C2] PKRU: 55555554 [ 4020.669172][ C2] Call Trace: [ 4020.669173][ C2] [ 4020.669176][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4020.669181][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4020.669184][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4020.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4020.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4020.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4020.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4020.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4020.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 4020.669210][ C2] xa_store (lib/xarray.c:1734) [ 4020.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4020.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4020.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4020.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4020.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4020.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4020.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4020.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4020.669245][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4020.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4020.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4020.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4020.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4020.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4020.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 4020.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4020.669280][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4020.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4020.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4020.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4020.669295][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4020.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4020.669303][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4020.669306][ C2] RIP: 0033:0x7f439756d93b [ 4020.669309][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4020.669312][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4020.669315][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4020.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4020.669319][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4020.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4020.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4036.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4036.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4036.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4036.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4036.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4036.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4036.669145][ C1] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4036.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4036.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4036.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4036.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4036.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4036.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4036.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4036.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4036.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4036.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4036.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4036.669173][ C1] PKRU: 55555554 [ 4036.669174][ C1] Call Trace: [ 4036.669176][ C1] [ 4036.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4036.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4036.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4036.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4036.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4036.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4036.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4036.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 4036.669207][ C1] xa_store (lib/xarray.c:1734) [ 4036.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4036.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4036.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4036.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4036.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4036.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4036.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4036.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4036.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4036.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4036.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4036.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4036.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 4036.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4036.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4036.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4036.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4036.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4036.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4036.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4036.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4036.669303][ C1] RIP: 0033:0x7f439756d93b [ 4036.669306][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4036.669309][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4036.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4036.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4036.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4036.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4036.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4036.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4036.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4036.670144][ C3] softirqs last disabled at (0): 0x0 | [ 4036.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 4036.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4036.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4036.670169][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4036.670172][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4036.670175][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4036.670177][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4036.670179][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4036.670181][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4036.670183][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4036.670185][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4036.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4036.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4036.670194][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4036.670195][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4036.670197][ C3] PKRU: 55555554 [ 4036.670199][ C3] Call Trace: [ 4036.670203][ C3] [ 4036.670205][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4036.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4036.670215][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4036.670219][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4036.670223][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4036.670228][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4036.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4036.670236][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4036.670239][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4036.670242][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4036.670245][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4036.670248][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4036.670250][ C3] ? xas_alloc (lib/xarray.c:378) [ 4036.670256][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4036.670261][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4036.670264][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4036.670268][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4036.670273][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4036.670277][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4036.670282][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670287][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4036.670293][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4036.670299][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670302][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4036.670305][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4036.670309][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4036.670312][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4036.670314][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4036.670320][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4036.670323][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4036.670326][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4036.670330][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4036.670335][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4036.670338][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4036.670341][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4036.670345][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670348][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4036.670352][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4036.670357][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4036.670360][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4036.670365][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4036.670369][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670372][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4036.670377][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4036.670382][ C3] handle_softirqs (kernel/softirq.c:579) [ 4036.670388][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4036.670391][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4036.670395][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4036.670399][ C3] [ 4036.670400][ C3] [ 4036.670402][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4036.670407][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4036.670410][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4036.670413][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4036.670416][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4036.670418][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4036.670421][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4036.670422][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4036.670424][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4036.670429][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4036.670434][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4036.670440][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4036.670444][ C3] ? xas_alloc (lib/xarray.c:378) [ 4036.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 4036.670451][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4036.670456][ C3] ? xas_alloc (lib/xarray.c:378) [ 4036.670458][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4036.670463][ C3] xas_alloc (lib/xarray.c:378) [ 4036.670468][ C3] xas_create (lib/xarray.c:685) [ 4036.670474][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4036.670478][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4036.670482][ C3] __xa_store (lib/xarray.c:1703) [ 4036.670486][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4036.670490][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4036.670493][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4036.670496][ C3] ? xa_store (lib/xarray.c:1734) [ 4036.670501][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4036.670504][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4036.670508][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4036.670513][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4036.670516][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4036.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670522][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4036.670526][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4036.670531][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4036.670535][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4036.670540][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4036.670544][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4036.670549][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4036.670557][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4036.670561][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4036.670566][ C3] ksys_unshare (kernel/fork.c:3121) [ 4036.670570][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4036.670574][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4036.670577][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4036.670580][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4036.670584][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4036.670590][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4036.670594][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4036.670600][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4036.670603][ C3] RIP: 0033:0x7f439756d93b [ 4036.670607][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4036.670610][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4036.670613][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4036.670615][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4036.670617][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4036.670619][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4036.670621][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4044.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4044.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4044.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4044.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4044.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4044.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4044.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4044.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4044.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4044.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4044.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4044.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4044.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4044.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4044.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4044.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4044.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4044.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4044.656172][ C0] PKRU: 55555554 [ 4044.656173][ C0] Call Trace: [ 4044.656175][ C0] [ 4044.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4044.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4044.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4044.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4044.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4044.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4044.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4044.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 4044.656207][ C0] xa_store (lib/xarray.c:1734) [ 4044.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4044.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4044.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4044.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4044.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4044.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4044.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4044.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4044.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4044.656248][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4044.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4044.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4044.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4044.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4044.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 4044.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4044.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4044.656282][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4044.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4044.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4044.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4044.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4044.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4044.656304][ C0] RIP: 0033:0x7f439756d93b [ 4044.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4044.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4044.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4044.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4044.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4044.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4044.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4048.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4048.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4048.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4048.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4048.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4048.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4048.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4048.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4048.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4048.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4048.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4048.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4048.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4048.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4048.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4048.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4048.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4048.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4048.669172][ C2] PKRU: 55555554 [ 4048.669174][ C2] Call Trace: [ 4048.669176][ C2] [ 4048.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4048.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4048.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4048.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4048.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4048.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4048.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4048.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 4048.669208][ C2] xa_store (lib/xarray.c:1734) [ 4048.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4048.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4048.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4048.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4048.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4048.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4048.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4048.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4048.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4048.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4048.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4048.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4048.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4048.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4048.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4048.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4048.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4048.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4048.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4048.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4048.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4048.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4048.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4048.669305][ C2] RIP: 0033:0x7f439756d93b [ 4048.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4048.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4048.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4048.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4048.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4048.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4048.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4064.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4064.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4064.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4064.669136][ C1] Tainted: [L]=SOFTLOCKUP [ 4064.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4064.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4064.669144][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4064.669147][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4064.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4064.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4064.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4064.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4064.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4064.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4064.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4064.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4064.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4064.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4064.669171][ C1] PKRU: 55555554 [ 4064.669172][ C1] Call Trace: [ 4064.669174][ C1] [ 4064.669176][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4064.669180][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4064.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4064.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4064.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4064.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4064.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4064.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 4064.669207][ C1] xa_store (lib/xarray.c:1734) [ 4064.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4064.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4064.669220][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4064.669223][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4064.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.669234][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4064.669239][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4064.669243][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4064.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4064.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4064.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4064.669262][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4064.669266][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4064.669270][ C1] ksys_unshare (kernel/fork.c:3121) [ 4064.669275][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4064.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4064.669282][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4064.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4064.669288][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4064.669293][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4064.669297][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4064.669301][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4064.669304][ C1] RIP: 0033:0x7f439756d93b [ 4064.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4064.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4064.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4064.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4064.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4064.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4064.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4064.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4064.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4064.670144][ C3] softirqs last disabled at (0): 0x0 | [ 4064.670156][ C3] Tainted: [L]=SOFTLOCKUP [ 4064.670157][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4064.670160][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4064.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4064.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4064.670173][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4064.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4064.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4064.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4064.670181][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4064.670183][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4064.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4064.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4064.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4064.670193][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4064.670195][ C3] PKRU: 55555554 [ 4064.670196][ C3] Call Trace: [ 4064.670200][ C3] [ 4064.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4064.670207][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4064.670213][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4064.670216][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4064.670220][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4064.670225][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4064.670228][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4064.670232][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4064.670235][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4064.670238][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4064.670241][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4064.670244][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4064.670247][ C3] ? xas_alloc (lib/xarray.c:378) [ 4064.670252][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4064.670257][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4064.670259][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4064.670263][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4064.670268][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4064.670272][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4064.670277][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670282][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4064.670288][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4064.670294][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670297][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4064.670300][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4064.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4064.670307][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4064.670309][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4064.670315][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4064.670318][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4064.670321][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4064.670325][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4064.670330][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4064.670333][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4064.670336][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4064.670339][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670343][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4064.670347][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4064.670352][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4064.670354][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4064.670360][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4064.670364][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670367][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4064.670372][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4064.670376][ C3] handle_softirqs (kernel/softirq.c:579) [ 4064.670382][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4064.670385][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4064.670389][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4064.670392][ C3] [ 4064.670394][ C3] [ 4064.670395][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4064.670400][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4064.670403][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4064.670406][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4064.670409][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4064.670411][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4064.670413][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4064.670415][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4064.670417][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4064.670421][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4064.670427][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4064.670432][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4064.670436][ C3] ? xas_alloc (lib/xarray.c:378) [ 4064.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 4064.670443][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4064.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 4064.670450][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4064.670455][ C3] xas_alloc (lib/xarray.c:378) [ 4064.670460][ C3] xas_create (lib/xarray.c:685) [ 4064.670466][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4064.670470][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4064.670474][ C3] __xa_store (lib/xarray.c:1703) [ 4064.670477][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4064.670482][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4064.670485][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4064.670488][ C3] ? xa_store (lib/xarray.c:1734) [ 4064.670493][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4064.670497][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4064.670500][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4064.670505][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4064.670508][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4064.670511][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4064.670518][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4064.670523][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4064.670527][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4064.670532][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4064.670536][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4064.670541][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4064.670549][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4064.670553][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4064.670558][ C3] ksys_unshare (kernel/fork.c:3121) [ 4064.670562][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4064.670565][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4064.670569][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4064.670572][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4064.670576][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4064.670582][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4064.670585][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4064.670590][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4064.670593][ C3] RIP: 0033:0x7f439756d93b [ 4064.670597][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4064.670600][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4064.670603][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4064.670605][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4064.670607][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4064.670609][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4064.670611][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4072.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4072.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4072.656129][ C0] softirqs last disabled at (0): 0x0 | [ 4072.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 4072.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4072.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4072.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4072.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4072.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4072.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4072.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4072.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4072.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4072.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4072.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4072.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4072.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4072.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4072.656172][ C0] PKRU: 55555554 [ 4072.656173][ C0] Call Trace: [ 4072.656175][ C0] [ 4072.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4072.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4072.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4072.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4072.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4072.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4072.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4072.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 4072.656206][ C0] xa_store (lib/xarray.c:1734) [ 4072.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4072.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4072.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4072.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4072.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4072.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4072.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4072.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4072.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4072.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4072.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4072.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4072.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4072.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4072.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 4072.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4072.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4072.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4072.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4072.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4072.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4072.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4072.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4072.656303][ C0] RIP: 0033:0x7f439756d93b [ 4072.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4072.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4072.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4072.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4072.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4072.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4072.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4076.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4076.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4076.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4076.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4076.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4076.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4076.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4076.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4076.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4076.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4076.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4076.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4076.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4076.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4076.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4076.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4076.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4076.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4076.669170][ C2] PKRU: 55555554 [ 4076.669171][ C2] Call Trace: [ 4076.669173][ C2] [ 4076.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4076.669179][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4076.669183][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4076.669186][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4076.669191][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4076.669194][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4076.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4076.669199][ C2] ? xa_store (lib/xarray.c:1734) [ 4076.669205][ C2] xa_store (lib/xarray.c:1734) [ 4076.669208][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4076.669212][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4076.669217][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4076.669219][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4076.669222][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4076.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4076.669230][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4076.669235][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4076.669240][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4076.669244][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4076.669248][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4076.669252][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4076.669258][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4076.669262][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4076.669266][ C2] ksys_unshare (kernel/fork.c:3121) [ 4076.669271][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4076.669274][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4076.669278][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4076.669281][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4076.669284][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4076.669289][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4076.669293][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4076.669297][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4076.669300][ C2] RIP: 0033:0x7f439756d93b [ 4076.669302][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4076.669305][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4076.669308][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4076.669310][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4076.669312][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4076.669314][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4076.669316][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4090.618705][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4090.618981][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4090.619216][ C1] NMI backtrace for cpu 1 | [ 4090.619226][ C1] Tainted: [L]=SOFTLOCKUP [ 4090.619227][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4090.619229][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4090.619235][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4090.619238][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4090.619241][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4090.619243][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4090.619245][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4090.619247][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4090.619249][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4090.619251][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4090.619253][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4090.619257][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4090.619258][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4090.619260][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4090.619262][ C1] PKRU: 55555554 [ 4090.619263][ C1] Call Trace: [ 4090.619264][ C1] [ 4090.619266][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4090.619270][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4090.619274][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4090.619277][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4090.619282][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4090.619285][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4090.619288][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4090.619291][ C1] ? xa_store (lib/xarray.c:1734) [ 4090.619296][ C1] xa_store (lib/xarray.c:1734) [ 4090.619300][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4090.619303][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4090.619308][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4090.619310][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4090.619313][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.619317][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.619320][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4090.619325][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4090.619329][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4090.619333][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4090.619337][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4090.619341][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4090.619348][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4090.619351][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4090.619356][ C1] ksys_unshare (kernel/fork.c:3121) [ 4090.619360][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4090.619364][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4090.619367][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4090.619370][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4090.619374][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4090.619379][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4090.619383][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4090.619387][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4090.619390][ C1] RIP: 0033:0x7f439756d93b [ 4090.619392][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4090.619395][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4090.619397][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4090.619399][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4090.619401][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4090.619403][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4090.619404][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4090.619403][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4090.619404][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4090.619410][ C1] | [ 4090.620224][ C3] Tainted: [L]=SOFTLOCKUP [ 4090.620226][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4090.620227][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4090.620232][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4090.620236][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4090.620239][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4090.620242][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4090.620244][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4090.620246][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4090.620248][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4090.620250][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4090.620253][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4090.620257][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4090.620259][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4090.620261][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4090.620262][ C3] PKRU: 55555554 [ 4090.620264][ C3] Call Trace: [ 4090.620265][ C3] [ 4090.620266][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4090.620271][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4090.620275][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4090.620278][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4090.620282][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4090.620286][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4090.620290][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4090.620293][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4090.620296][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4090.620299][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4090.620302][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4090.620304][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4090.620307][ C3] ? xas_alloc (lib/xarray.c:378) [ 4090.620313][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4090.620316][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4090.620319][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4090.620323][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4090.620328][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4090.620332][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4090.620337][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620341][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4090.620347][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4090.620352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620355][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4090.620358][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4090.620361][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4090.620364][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4090.620367][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4090.620373][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4090.620375][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4090.620379][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4090.620383][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4090.620387][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4090.620390][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4090.620393][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4090.620397][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620401][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4090.620405][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4090.620410][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4090.620413][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4090.620418][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4090.620421][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620424][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4090.620429][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4090.620433][ C3] handle_softirqs (kernel/softirq.c:579) [ 4090.620438][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4090.620442][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4090.620445][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4090.620448][ C3] [ 4090.620449][ C3] [ 4090.620451][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4090.620455][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4090.620458][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4090.620461][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4090.620463][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4090.620465][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4090.620467][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4090.620469][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4090.620471][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4090.620476][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4090.620481][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4090.620486][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4090.620490][ C3] ? xas_alloc (lib/xarray.c:378) [ 4090.620494][ C3] ? xas_alloc (lib/xarray.c:378) [ 4090.620497][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4090.620501][ C3] ? xas_alloc (lib/xarray.c:378) [ 4090.620504][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4090.620509][ C3] xas_alloc (lib/xarray.c:378) [ 4090.620513][ C3] xas_create (lib/xarray.c:685) [ 4090.620519][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4090.620523][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4090.620527][ C3] __xa_store (lib/xarray.c:1703) [ 4090.620531][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4090.620536][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4090.620539][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4090.620542][ C3] ? xa_store (lib/xarray.c:1734) [ 4090.620547][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4090.620551][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4090.620554][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4090.620559][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4090.620562][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4090.620564][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620569][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4090.620572][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4090.620577][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4090.620581][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4090.620585][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4090.620589][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4090.620593][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4090.620600][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4090.620604][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4090.620610][ C3] ksys_unshare (kernel/fork.c:3121) [ 4090.620615][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4090.620618][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4090.620622][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4090.620624][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4090.620628][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4090.620634][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4090.620637][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4090.620642][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4090.620645][ C3] RIP: 0033:0x7f439756d93b [ 4090.620650][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4090.620652][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4090.620655][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4090.620657][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4090.620658][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4090.620660][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4090.620661][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4100.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4100.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4100.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4100.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4100.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4100.656140][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 4100.656144][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 4100.656147][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 4100.656150][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4100.656152][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4100.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4100.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4100.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4100.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4100.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4100.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4100.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4100.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4100.656172][ C0] PKRU: 55555554 [ 4100.656173][ C0] Call Trace: [ 4100.656175][ C0] [ 4100.656177][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4100.656182][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4100.656185][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4100.656189][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4100.656192][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4100.656198][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4100.656201][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4100.656204][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4100.656207][ C0] ? xa_store (lib/xarray.c:1734) [ 4100.656212][ C0] xa_store (lib/xarray.c:1734) [ 4100.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4100.656219][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4100.656224][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4100.656227][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4100.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4100.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4100.656237][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4100.656242][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4100.656247][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4100.656251][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4100.656255][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4100.656259][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4100.656266][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4100.656269][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4100.656273][ C0] ksys_unshare (kernel/fork.c:3121) [ 4100.656278][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4100.656281][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4100.656285][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4100.656288][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4100.656291][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4100.656296][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4100.656300][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4100.656304][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4100.656307][ C0] RIP: 0033:0x7f439756d93b [ 4100.656310][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4100.656313][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4100.656316][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4100.656318][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4100.656320][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4100.656322][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4100.656324][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4104.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4104.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4104.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4104.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4104.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4104.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4104.669145][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4104.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4104.669151][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4104.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4104.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4104.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4104.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4104.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4104.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4104.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4104.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4104.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4104.669172][ C2] PKRU: 55555554 [ 4104.669173][ C2] Call Trace: [ 4104.669175][ C2] [ 4104.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4104.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4104.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4104.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4104.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4104.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4104.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4104.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 4104.669207][ C2] xa_store (lib/xarray.c:1734) [ 4104.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4104.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4104.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4104.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4104.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4104.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4104.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4104.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4104.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4104.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4104.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4104.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4104.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4104.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4104.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4104.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4104.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4104.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4104.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4104.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4104.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4104.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4104.669301][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4104.669304][ C2] RIP: 0033:0x7f439756d93b [ 4104.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4104.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4104.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4104.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4104.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4104.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4104.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4116.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4116.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4116.669129][ C1] softirqs last disabled at (0): 0x0 | [ 4116.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 4116.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4116.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4116.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4116.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4116.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4116.669154][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4116.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4116.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4116.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4116.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4116.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4116.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4116.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4116.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4116.669173][ C1] PKRU: 55555554 [ 4116.669175][ C1] Call Trace: [ 4116.669177][ C1] [ 4116.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4116.669183][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4116.669187][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4116.669190][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4116.669196][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4116.669199][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4116.669202][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4116.669205][ C1] ? xa_store (lib/xarray.c:1734) [ 4116.669210][ C1] xa_store (lib/xarray.c:1734) [ 4116.669214][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4116.669218][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4116.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4116.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4116.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.669233][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.669236][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4116.669241][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4116.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4116.669249][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4116.669254][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4116.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4116.669264][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4116.669268][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4116.669272][ C1] ksys_unshare (kernel/fork.c:3121) [ 4116.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4116.669280][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4116.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4116.669286][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4116.669290][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4116.669295][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4116.669299][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4116.669303][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4116.669306][ C1] RIP: 0033:0x7f439756d93b [ 4116.669309][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4116.669312][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4116.669315][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4116.669317][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4116.669319][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4116.669321][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4116.669323][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4116.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4116.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4116.670145][ C3] softirqs last disabled at (0): 0x0 | [ 4116.670156][ C3] Tainted: [L]=SOFTLOCKUP [ 4116.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4116.670160][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4116.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4116.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4116.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4116.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4116.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4116.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4116.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4116.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4116.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4116.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4116.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4116.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4116.670196][ C3] PKRU: 55555554 [ 4116.670197][ C3] Call Trace: [ 4116.670200][ C3] [ 4116.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4116.670208][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4116.670213][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4116.670216][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4116.670221][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4116.670225][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4116.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4116.670232][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4116.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4116.670239][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4116.670242][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4116.670244][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4116.670247][ C3] ? xas_alloc (lib/xarray.c:378) [ 4116.670253][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4116.670258][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4116.670261][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4116.670264][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4116.670269][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4116.670274][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4116.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670283][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4116.670290][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4116.670295][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670298][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4116.670301][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4116.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4116.670309][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4116.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4116.670318][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4116.670321][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4116.670324][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4116.670328][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4116.670332][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4116.670335][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4116.670338][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4116.670341][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670345][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4116.670349][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4116.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4116.670356][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4116.670362][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4116.670366][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670369][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4116.670374][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4116.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 4116.670384][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4116.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4116.670391][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4116.670395][ C3] [ 4116.670396][ C3] [ 4116.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4116.670402][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4116.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4116.670408][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4116.670411][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4116.670413][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4116.670415][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4116.670417][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4116.670419][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4116.670423][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4116.670428][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4116.670434][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4116.670438][ C3] ? xas_alloc (lib/xarray.c:378) [ 4116.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 4116.670445][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4116.670449][ C3] ? xas_alloc (lib/xarray.c:378) [ 4116.670452][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4116.670457][ C3] xas_alloc (lib/xarray.c:378) [ 4116.670462][ C3] xas_create (lib/xarray.c:685) [ 4116.670468][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4116.670472][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4116.670476][ C3] __xa_store (lib/xarray.c:1703) [ 4116.670480][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4116.670485][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4116.670488][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4116.670491][ C3] ? xa_store (lib/xarray.c:1734) [ 4116.670496][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4116.670500][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4116.670503][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4116.670508][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4116.670511][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4116.670514][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4116.670521][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4116.670526][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4116.670530][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4116.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4116.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4116.670543][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4116.670551][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4116.670555][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4116.670561][ C3] ksys_unshare (kernel/fork.c:3121) [ 4116.670565][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4116.670568][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4116.670572][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4116.670575][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4116.670578][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4116.670584][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4116.670588][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4116.670593][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4116.670596][ C3] RIP: 0033:0x7f439756d93b [ 4116.670599][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4116.670602][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4116.670605][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4116.670607][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4116.670609][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4116.670612][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4116.670613][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4128.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4128.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4128.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4128.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4128.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4128.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4128.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4128.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4128.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4128.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4128.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4128.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4128.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4128.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4128.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4128.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4128.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4128.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4128.656171][ C0] PKRU: 55555554 [ 4128.656172][ C0] Call Trace: [ 4128.656173][ C0] [ 4128.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4128.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4128.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4128.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4128.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4128.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4128.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4128.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 4128.656205][ C0] xa_store (lib/xarray.c:1734) [ 4128.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4128.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4128.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4128.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4128.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4128.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4128.656231][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4128.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4128.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4128.656245][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4128.656249][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4128.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4128.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4128.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4128.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 4128.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4128.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4128.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4128.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4128.656285][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4128.656290][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4128.656294][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4128.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4128.656302][ C0] RIP: 0033:0x7f439756d93b [ 4128.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4128.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4128.656310][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4128.656312][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4128.656314][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4128.656316][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4128.656318][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4132.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4132.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4132.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4132.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4132.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4132.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4132.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4132.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4132.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4132.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4132.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4132.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4132.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4132.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4132.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4132.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4132.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4132.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4132.669170][ C2] PKRU: 55555554 [ 4132.669172][ C2] Call Trace: [ 4132.669173][ C2] [ 4132.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4132.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4132.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4132.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4132.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4132.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4132.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4132.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 4132.669206][ C2] xa_store (lib/xarray.c:1734) [ 4132.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4132.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4132.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4132.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4132.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4132.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4132.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4132.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4132.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4132.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4132.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4132.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4132.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4132.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4132.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 4132.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4132.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4132.669279][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4132.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4132.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4132.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4132.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4132.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4132.669302][ C2] RIP: 0033:0x7f439756d93b [ 4132.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4132.669307][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4132.669310][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4132.669312][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4132.669314][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4132.669316][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4132.669318][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4144.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4144.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4144.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4144.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4144.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4144.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 4144.669144][ C1] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 4144.669147][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000246 [ 4144.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4144.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4144.669154][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4144.669156][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4144.669158][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4144.669160][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4144.669162][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4144.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4144.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4144.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4144.669171][ C1] PKRU: 55555554 [ 4144.669173][ C1] Call Trace: [ 4144.669174][ C1] [ 4144.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4144.669180][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4144.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4144.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4144.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4144.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4144.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4144.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 4144.669206][ C1] xa_store (lib/xarray.c:1734) [ 4144.669210][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4144.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4144.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4144.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4144.669224][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.669232][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4144.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4144.669241][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4144.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4144.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4144.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4144.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4144.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4144.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 4144.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4144.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4144.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4144.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4144.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4144.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4144.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4144.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4144.669303][ C1] RIP: 0033:0x7f439756d93b [ 4144.669306][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4144.669309][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4144.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4144.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4144.669316][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4144.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4144.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4144.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4144.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4144.670145][ C3] softirqs last disabled at (0): 0x0 | [ 4144.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 4144.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4144.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4144.670169][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4144.670172][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4144.670175][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4144.670177][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4144.670179][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4144.670181][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4144.670183][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4144.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4144.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4144.670191][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4144.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4144.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4144.670196][ C3] PKRU: 55555554 [ 4144.670197][ C3] Call Trace: [ 4144.670201][ C3] [ 4144.670203][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4144.670209][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4144.670214][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4144.670217][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4144.670222][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4144.670226][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4144.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4144.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4144.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4144.670240][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4144.670242][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4144.670245][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4144.670248][ C3] ? xas_alloc (lib/xarray.c:378) [ 4144.670254][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4144.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4144.670262][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4144.670266][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4144.670272][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4144.670276][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4144.670281][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670285][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4144.670292][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4144.670297][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670300][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4144.670303][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4144.670306][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4144.670310][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4144.670313][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4144.670318][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4144.670321][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4144.670324][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4144.670329][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4144.670333][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4144.670336][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4144.670339][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4144.670343][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670346][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4144.670350][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4144.670355][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4144.670358][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4144.670363][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4144.670367][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670370][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4144.670375][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4144.670380][ C3] handle_softirqs (kernel/softirq.c:579) [ 4144.670386][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4144.670389][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4144.670393][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4144.670397][ C3] [ 4144.670398][ C3] [ 4144.670399][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4144.670405][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4144.670408][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4144.670411][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4144.670414][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4144.670416][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4144.670418][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4144.670420][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4144.670421][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4144.670425][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4144.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4144.670437][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4144.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 4144.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 4144.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4144.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 4144.670456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4144.670461][ C3] xas_alloc (lib/xarray.c:378) [ 4144.670465][ C3] xas_create (lib/xarray.c:685) [ 4144.670471][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4144.670476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4144.670479][ C3] __xa_store (lib/xarray.c:1703) [ 4144.670483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4144.670488][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4144.670490][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4144.670493][ C3] ? xa_store (lib/xarray.c:1734) [ 4144.670498][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4144.670502][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4144.670505][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4144.670510][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4144.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4144.670516][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670520][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4144.670523][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4144.670528][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4144.670532][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4144.670536][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4144.670540][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4144.670545][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4144.670552][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4144.670556][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4144.670561][ C3] ksys_unshare (kernel/fork.c:3121) [ 4144.670565][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4144.670569][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4144.670573][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4144.670575][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4144.670579][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4144.670585][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4144.670589][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4144.670594][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4144.670597][ C3] RIP: 0033:0x7f439756d93b [ 4144.670602][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4144.670605][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4144.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4144.670610][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4144.670612][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4144.670614][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4144.670616][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4156.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4156.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4156.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4156.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4156.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4156.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4156.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4156.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4156.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4156.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4156.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4156.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4156.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4156.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4156.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4156.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4156.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4156.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4156.656171][ C0] PKRU: 55555554 [ 4156.656173][ C0] Call Trace: [ 4156.656174][ C0] [ 4156.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4156.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4156.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4156.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4156.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4156.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4156.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4156.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 4156.656205][ C0] xa_store (lib/xarray.c:1734) [ 4156.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4156.656213][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4156.656218][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4156.656221][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4156.656224][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4156.656228][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4156.656232][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4156.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4156.656241][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4156.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4156.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4156.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4156.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4156.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4156.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 4156.656273][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4156.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4156.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4156.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4156.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4156.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4156.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4156.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4156.656304][ C0] RIP: 0033:0x7f439756d93b [ 4156.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4156.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4156.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4156.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4156.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4156.656317][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4156.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4160.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4160.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4160.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4160.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4160.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4160.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4160.669144][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4160.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4160.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4160.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4160.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4160.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4160.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4160.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4160.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4160.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4160.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4160.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4160.669171][ C2] PKRU: 55555554 [ 4160.669172][ C2] Call Trace: [ 4160.669174][ C2] [ 4160.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4160.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4160.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4160.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4160.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4160.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4160.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4160.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 4160.669206][ C2] xa_store (lib/xarray.c:1734) [ 4160.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4160.669214][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4160.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4160.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4160.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4160.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4160.669232][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4160.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4160.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4160.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4160.669250][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4160.669254][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4160.669260][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4160.669264][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4160.669268][ C2] ksys_unshare (kernel/fork.c:3121) [ 4160.669272][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4160.669276][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4160.669279][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4160.669282][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4160.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4160.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4160.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4160.669299][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4160.669302][ C2] RIP: 0033:0x7f439756d93b [ 4160.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4160.669307][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4160.669310][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4160.669312][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4160.669314][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4160.669316][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4160.669318][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4168.632464][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4168.632744][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4168.632985][ C1] NMI backtrace for cpu 1 | [ 4168.632995][ C1] Tainted: [L]=SOFTLOCKUP [ 4168.632997][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4168.632999][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4168.633004][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4168.633008][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4168.633010][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4168.633013][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4168.633015][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4168.633017][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4168.633019][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4168.633020][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4168.633023][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4168.633026][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4168.633028][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4168.633029][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4168.633031][ C1] PKRU: 55555554 [ 4168.633032][ C1] Call Trace: [ 4168.633033][ C1] [ 4168.633036][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4168.633039][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4168.633043][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4168.633046][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4168.633051][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4168.633053][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4168.633056][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4168.633059][ C1] ? xa_store (lib/xarray.c:1734) [ 4168.633064][ C1] xa_store (lib/xarray.c:1734) [ 4168.633068][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4168.633071][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4168.633075][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4168.633078][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4168.633081][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.633085][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.633089][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4168.633094][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4168.633097][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4168.633102][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4168.633106][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4168.633110][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4168.633116][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4168.633120][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4168.633124][ C1] ksys_unshare (kernel/fork.c:3121) [ 4168.633129][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4168.633132][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4168.633136][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4168.633139][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4168.633142][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4168.633147][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4168.633151][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4168.633155][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4168.633159][ C1] RIP: 0033:0x7f439756d93b [ 4168.633161][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4168.633164][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4168.633167][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4168.633169][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4168.633171][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4168.633173][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4168.633174][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4168.633173][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4168.633174][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4168.633180][ C1] | [ 4168.633994][ C3] Tainted: [L]=SOFTLOCKUP [ 4168.633995][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4168.633997][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 4168.634004][ C3] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 4168.634008][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 4168.634011][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4168.634014][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4168.634016][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4168.634018][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4168.634020][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4168.634022][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4168.634025][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4168.634029][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4168.634031][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4168.634033][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4168.634034][ C3] PKRU: 55555554 [ 4168.634036][ C3] Call Trace: [ 4168.634037][ C3] [ 4168.634038][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4168.634042][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4168.634046][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4168.634050][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4168.634054][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4168.634057][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4168.634062][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4168.634065][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4168.634069][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4168.634071][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4168.634075][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4168.634077][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4168.634080][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4168.634083][ C3] ? xas_alloc (lib/xarray.c:378) [ 4168.634088][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4168.634092][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4168.634095][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4168.634098][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4168.634103][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4168.634107][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4168.634113][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634116][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4168.634123][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4168.634129][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634132][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4168.634135][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4168.634138][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4168.634142][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4168.634144][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4168.634150][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4168.634153][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4168.634156][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4168.634161][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4168.634164][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4168.634168][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4168.634171][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4168.634175][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634178][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4168.634182][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4168.634186][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4168.634189][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4168.634194][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4168.634198][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634201][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4168.634206][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4168.634209][ C3] handle_softirqs (kernel/softirq.c:579) [ 4168.634215][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4168.634218][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4168.634222][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4168.634225][ C3] [ 4168.634226][ C3] [ 4168.634227][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4168.634231][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4168.634235][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4168.634237][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4168.634239][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4168.634241][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4168.634243][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4168.634245][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4168.634247][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4168.634251][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4168.634256][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4168.634262][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4168.634265][ C3] ? xas_alloc (lib/xarray.c:378) [ 4168.634269][ C3] ? xas_alloc (lib/xarray.c:378) [ 4168.634272][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4168.634277][ C3] ? xas_alloc (lib/xarray.c:378) [ 4168.634279][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4168.634284][ C3] xas_alloc (lib/xarray.c:378) [ 4168.634288][ C3] xas_create (lib/xarray.c:685) [ 4168.634294][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4168.634298][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4168.634302][ C3] __xa_store (lib/xarray.c:1703) [ 4168.634306][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4168.634310][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4168.634313][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4168.634316][ C3] ? xa_store (lib/xarray.c:1734) [ 4168.634321][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4168.634324][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4168.634327][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4168.634332][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4168.634335][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4168.634337][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634341][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4168.634345][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4168.634349][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4168.634353][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4168.634357][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4168.634361][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4168.634365][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4168.634371][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4168.634375][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4168.634380][ C3] ksys_unshare (kernel/fork.c:3121) [ 4168.634385][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4168.634388][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4168.634392][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4168.634394][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4168.634398][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4168.634404][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4168.634407][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4168.634412][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4168.634415][ C3] RIP: 0033:0x7f439756d93b [ 4168.634419][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4168.634422][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4168.634424][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4168.634426][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4168.634428][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4168.634429][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4168.634431][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4184.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4184.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4184.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4184.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 4184.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4184.656139][ C0] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 4184.656143][ C0] Code: ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 <49> 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e All code ======== 0: ff (bad) 1: ff (bad) 2: 7f ff jg 0x3 4: ff 48 39 decl 0x39(%rax) 7: c7 (bad) 8: 76 dd jbe 0xffffffffffffffe7 a: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 f: 48 89 fd mov %rdi,%rbp 12: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 19: fc ff df 1c: 4d 89 d1 mov %r10,%r9 1f: 48 c1 ed 03 shr $0x3,%rbp 23: 49 c1 e9 03 shr $0x3,%r9 27: 48 01 c5 add %rax,%rbp 2a:* 49 01 c1 add %rax,%r9 <-- trapping instruction 2d: 48 89 e8 mov %rbp,%rax 30: 49 8d 59 01 lea 0x1(%r9),%rbx 34: 48 89 da mov %rbx,%rdx 37: 48 29 ea sub %rbp,%rdx 3a: 48 83 fa 10 cmp $0x10,%rdx 3e: 0f .byte 0xf 3f: 8e .byte 0x8e Code starting with the faulting instruction =========================================== 0: 49 01 c1 add %rax,%r9 3: 48 89 e8 mov %rbp,%rax 6: 49 8d 59 01 lea 0x1(%r9),%rbx a: 48 89 da mov %rbx,%rdx d: 48 29 ea sub %rbp,%rdx 10: 48 83 fa 10 cmp $0x10,%rdx 14: 0f .byte 0xf 15: 8e .byte 0x8e [ 4184.656146][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 4184.656149][ C0] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4184.656151][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4184.656153][ C0] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: 1ffffffff77dcb80 [ 4184.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4184.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4184.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4184.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4184.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4184.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4184.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4184.656171][ C0] PKRU: 55555554 [ 4184.656172][ C0] Call Trace: [ 4184.656173][ C0] [ 4184.656175][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4184.656180][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4184.656184][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4184.656188][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4184.656191][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4184.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4184.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4184.656201][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4184.656204][ C0] ? xa_store (lib/xarray.c:1734) [ 4184.656209][ C0] xa_store (lib/xarray.c:1734) [ 4184.656213][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4184.656217][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4184.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4184.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4184.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4184.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4184.656235][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4184.656241][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4184.656245][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4184.656249][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4184.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4184.656258][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4184.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4184.656268][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4184.656272][ C0] ksys_unshare (kernel/fork.c:3121) [ 4184.656277][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4184.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4184.656284][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4184.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4184.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4184.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4184.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4184.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4184.656306][ C0] RIP: 0033:0x7f439756d93b [ 4184.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4184.656311][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4184.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4184.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4184.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4184.656319][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4184.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4188.669118][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4188.669123][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4188.669127][ C2] softirqs last disabled at (0): 0x0 | [ 4188.669135][ C2] Tainted: [L]=SOFTLOCKUP [ 4188.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4188.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4188.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4188.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4188.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4188.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4188.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4188.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4188.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4188.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4188.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4188.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4188.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4188.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4188.669171][ C2] PKRU: 55555554 [ 4188.669172][ C2] Call Trace: [ 4188.669174][ C2] [ 4188.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4188.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4188.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4188.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4188.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4188.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4188.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4188.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 4188.669208][ C2] xa_store (lib/xarray.c:1734) [ 4188.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4188.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4188.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4188.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4188.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4188.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4188.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4188.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4188.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4188.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4188.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4188.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4188.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4188.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4188.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4188.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4188.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4188.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4188.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4188.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4188.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4188.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4188.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4188.669305][ C2] RIP: 0033:0x7f439756d93b [ 4188.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4188.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4188.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4188.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4188.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4188.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4188.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4192.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4192.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4192.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4192.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4192.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4192.669140][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 4192.669145][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 4192.669148][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 4192.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4192.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4192.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4192.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4192.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4192.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4192.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4192.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4192.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4192.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4192.669173][ C1] PKRU: 55555554 [ 4192.669174][ C1] Call Trace: [ 4192.669175][ C1] [ 4192.669177][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4192.669182][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4192.669185][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4192.669189][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4192.669192][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4192.669197][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4192.669200][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4192.669202][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4192.669205][ C1] ? xa_store (lib/xarray.c:1734) [ 4192.669210][ C1] xa_store (lib/xarray.c:1734) [ 4192.669214][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4192.669217][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4192.669222][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4192.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4192.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.669232][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.669236][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4192.669241][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4192.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4192.669249][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4192.669254][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4192.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4192.669264][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4192.669268][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4192.669272][ C1] ksys_unshare (kernel/fork.c:3121) [ 4192.669276][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4192.669280][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4192.669284][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4192.669286][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4192.669290][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4192.669295][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4192.669299][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4192.669303][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4192.669306][ C1] RIP: 0033:0x7f439756d93b [ 4192.669309][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4192.669312][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4192.669315][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4192.669317][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4192.669319][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4192.669321][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4192.669323][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4192.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4192.670142][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4192.670146][ C3] softirqs last disabled at (0): 0x0 | [ 4192.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 4192.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4192.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4192.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4192.670172][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4192.670175][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4192.670177][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4192.670179][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4192.670181][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4192.670183][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4192.670185][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4192.670188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4192.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4192.670194][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4192.670195][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4192.670197][ C3] PKRU: 55555554 [ 4192.670198][ C3] Call Trace: [ 4192.670201][ C3] [ 4192.670203][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4192.670208][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4192.670213][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4192.670217][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4192.670221][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4192.670226][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4192.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4192.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4192.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4192.670240][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4192.670242][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4192.670245][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4192.670248][ C3] ? xas_alloc (lib/xarray.c:378) [ 4192.670254][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4192.670258][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4192.670261][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4192.670264][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4192.670269][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4192.670273][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4192.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670283][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4192.670290][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4192.670296][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670299][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4192.670302][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4192.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4192.670308][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4192.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4192.670317][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4192.670320][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4192.670323][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4192.670327][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4192.670331][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4192.670335][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4192.670338][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4192.670342][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670345][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4192.670349][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4192.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4192.670356][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4192.670361][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4192.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670369][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4192.670373][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4192.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 4192.670384][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4192.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4192.670391][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4192.670395][ C3] [ 4192.670396][ C3] [ 4192.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4192.670402][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4192.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4192.670408][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4192.670411][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4192.670413][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4192.670415][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4192.670417][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4192.670419][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4192.670423][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4192.670428][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4192.670434][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4192.670437][ C3] ? xas_alloc (lib/xarray.c:378) [ 4192.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 4192.670444][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4192.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 4192.670451][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4192.670456][ C3] xas_alloc (lib/xarray.c:378) [ 4192.670460][ C3] xas_create (lib/xarray.c:685) [ 4192.670466][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4192.670471][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4192.670475][ C3] __xa_store (lib/xarray.c:1703) [ 4192.670479][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4192.670483][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4192.670486][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4192.670489][ C3] ? xa_store (lib/xarray.c:1734) [ 4192.670494][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4192.670498][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4192.670501][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4192.670506][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4192.670509][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4192.670511][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670516][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4192.670519][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4192.670523][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4192.670527][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4192.670532][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4192.670535][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4192.670540][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4192.670547][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4192.670551][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4192.670556][ C3] ksys_unshare (kernel/fork.c:3121) [ 4192.670560][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4192.670564][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4192.670568][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4192.670570][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4192.670573][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4192.670580][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4192.670584][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4192.670588][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4192.670592][ C3] RIP: 0033:0x7f439756d93b [ 4192.670595][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4192.670599][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4192.670602][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4192.670604][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4192.670606][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4192.670608][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4192.670610][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4212.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4212.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4212.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4212.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 4212.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4212.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4212.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4212.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4212.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4212.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4212.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4212.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4212.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4212.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4212.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4212.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4212.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4212.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4212.656170][ C0] PKRU: 55555554 [ 4212.656172][ C0] Call Trace: [ 4212.656174][ C0] [ 4212.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4212.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4212.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4212.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4212.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4212.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4212.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4212.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 4212.656206][ C0] xa_store (lib/xarray.c:1734) [ 4212.656210][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4212.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4212.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4212.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4212.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4212.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4212.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4212.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4212.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4212.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4212.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4212.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4212.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4212.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4212.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 4212.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4212.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4212.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4212.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4212.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4212.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4212.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4212.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4212.656304][ C0] RIP: 0033:0x7f439756d93b [ 4212.656306][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4212.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4212.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4212.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4212.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4212.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4212.656319][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4216.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4216.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4216.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4216.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4216.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4216.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4216.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4216.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4216.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4216.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4216.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4216.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4216.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4216.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4216.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4216.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4216.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4216.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4216.669172][ C2] PKRU: 55555554 [ 4216.669173][ C2] Call Trace: [ 4216.669175][ C2] [ 4216.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4216.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4216.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4216.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4216.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4216.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4216.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4216.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 4216.669207][ C2] xa_store (lib/xarray.c:1734) [ 4216.669211][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4216.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4216.669219][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4216.669222][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4216.669225][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4216.669230][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4216.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4216.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4216.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4216.669247][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4216.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4216.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4216.669261][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4216.669265][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4216.669269][ C2] ksys_unshare (kernel/fork.c:3121) [ 4216.669273][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4216.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4216.669280][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4216.669283][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4216.669286][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4216.669291][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4216.669295][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4216.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4216.669303][ C2] RIP: 0033:0x7f439756d93b [ 4216.669305][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4216.669308][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4216.669311][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4216.669313][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4216.669315][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4216.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4216.669319][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4220.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4220.669124][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4220.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4220.669136][ C1] Tainted: [L]=SOFTLOCKUP [ 4220.669137][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4220.669139][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4220.669144][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4220.669147][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4220.669149][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4220.669151][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4220.669153][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4220.669155][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4220.669157][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4220.669159][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4220.669161][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4220.669165][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4220.669166][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4220.669169][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4220.669170][ C1] PKRU: 55555554 [ 4220.669172][ C1] Call Trace: [ 4220.669173][ C1] [ 4220.669175][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4220.669179][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4220.669183][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4220.669186][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4220.669191][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4220.669194][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4220.669197][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4220.669200][ C1] ? xa_store (lib/xarray.c:1734) [ 4220.669205][ C1] xa_store (lib/xarray.c:1734) [ 4220.669209][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4220.669212][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4220.669217][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4220.669220][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4220.669223][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4220.669237][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4220.669241][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4220.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4220.669249][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4220.669253][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4220.669260][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4220.669263][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4220.669268][ C1] ksys_unshare (kernel/fork.c:3121) [ 4220.669272][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4220.669275][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4220.669279][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4220.669282][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4220.669285][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4220.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4220.669294][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4220.669298][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4220.669302][ C1] RIP: 0033:0x7f439756d93b [ 4220.669304][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4220.669307][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4220.669310][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4220.669312][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4220.669314][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4220.669316][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4220.669318][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4220.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4220.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4220.670145][ C3] softirqs last disabled at (0): 0x0 | [ 4220.670156][ C3] Tainted: [L]=SOFTLOCKUP [ 4220.670157][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4220.670160][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4220.670167][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4220.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4220.670173][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4220.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4220.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4220.670179][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4220.670181][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4220.670183][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4220.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4220.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4220.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4220.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4220.670195][ C3] PKRU: 55555554 [ 4220.670197][ C3] Call Trace: [ 4220.670201][ C3] [ 4220.670203][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4220.670209][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4220.670214][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4220.670217][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4220.670223][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4220.670227][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4220.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4220.670235][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4220.670238][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4220.670242][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4220.670244][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4220.670247][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4220.670250][ C3] ? xas_alloc (lib/xarray.c:378) [ 4220.670255][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4220.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4220.670262][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4220.670265][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4220.670271][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4220.670275][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4220.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670285][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4220.670291][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4220.670296][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670299][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4220.670302][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4220.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4220.670309][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4220.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4220.670317][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4220.670320][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4220.670323][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4220.670327][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4220.670332][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4220.670335][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4220.670338][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4220.670341][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670344][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4220.670349][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4220.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4220.670356][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4220.670361][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4220.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670368][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4220.670373][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4220.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 4220.670383][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4220.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4220.670390][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4220.670395][ C3] [ 4220.670396][ C3] [ 4220.670398][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4220.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4220.670407][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4220.670410][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4220.670413][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4220.670415][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4220.670418][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4220.670419][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4220.670421][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4220.670425][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4220.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4220.670436][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4220.670440][ C3] ? xas_alloc (lib/xarray.c:378) [ 4220.670445][ C3] ? xas_alloc (lib/xarray.c:378) [ 4220.670448][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4220.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 4220.670454][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4220.670459][ C3] xas_alloc (lib/xarray.c:378) [ 4220.670464][ C3] xas_create (lib/xarray.c:685) [ 4220.670471][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4220.670475][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4220.670479][ C3] __xa_store (lib/xarray.c:1703) [ 4220.670483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4220.670487][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4220.670490][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4220.670493][ C3] ? xa_store (lib/xarray.c:1734) [ 4220.670498][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4220.670502][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4220.670505][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4220.670510][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4220.670513][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4220.670515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670520][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4220.670523][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4220.670528][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4220.670531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4220.670536][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4220.670540][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4220.670544][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4220.670553][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4220.670556][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4220.670562][ C3] ksys_unshare (kernel/fork.c:3121) [ 4220.670567][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4220.670570][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4220.670574][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4220.670576][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4220.670580][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4220.670586][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4220.670590][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4220.670595][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4220.670598][ C3] RIP: 0033:0x7f439756d93b [ 4220.670602][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4220.670605][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4220.670608][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4220.670610][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4220.670612][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4220.670614][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4220.670616][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4240.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4240.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4240.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4240.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4240.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4240.656140][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 4240.656143][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 4240.656146][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 4240.656149][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4240.656151][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4240.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4240.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4240.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4240.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4240.656161][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4240.656164][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4240.656166][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4240.656168][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4240.656170][ C0] PKRU: 55555554 [ 4240.656171][ C0] Call Trace: [ 4240.656172][ C0] [ 4240.656175][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4240.656180][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4240.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4240.656187][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4240.656190][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4240.656196][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4240.656199][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4240.656201][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4240.656204][ C0] ? xa_store (lib/xarray.c:1734) [ 4240.656209][ C0] xa_store (lib/xarray.c:1734) [ 4240.656213][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4240.656217][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4240.656222][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4240.656225][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4240.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4240.656232][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4240.656235][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4240.656241][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4240.656245][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4240.656249][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4240.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4240.656258][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4240.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4240.656268][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4240.656272][ C0] ksys_unshare (kernel/fork.c:3121) [ 4240.656276][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4240.656280][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4240.656283][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4240.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4240.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4240.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4240.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4240.656302][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4240.656305][ C0] RIP: 0033:0x7f439756d93b [ 4240.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4240.656311][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4240.656314][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4240.656316][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4240.656318][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4240.656320][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4240.656321][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4244.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4244.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4244.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4244.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4244.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4244.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4244.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4244.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4244.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4244.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4244.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4244.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4244.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4244.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4244.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4244.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4244.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4244.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4244.669170][ C2] PKRU: 55555554 [ 4244.669172][ C2] Call Trace: [ 4244.669173][ C2] [ 4244.669176][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4244.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4244.669183][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4244.669186][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4244.669191][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4244.669194][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4244.669197][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4244.669200][ C2] ? xa_store (lib/xarray.c:1734) [ 4244.669205][ C2] xa_store (lib/xarray.c:1734) [ 4244.669209][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4244.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4244.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4244.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4244.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4244.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4244.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4244.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4244.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4244.669245][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4244.669249][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4244.669253][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4244.669259][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4244.669263][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4244.669267][ C2] ksys_unshare (kernel/fork.c:3121) [ 4244.669271][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4244.669274][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4244.669278][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4244.669281][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4244.669284][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4244.669289][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4244.669293][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4244.669297][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4244.669300][ C2] RIP: 0033:0x7f439756d93b [ 4244.669303][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4244.669305][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4244.669308][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4244.669310][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4244.669312][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4244.669314][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4244.669315][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4246.646321][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4246.646615][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4246.646851][ C1] NMI backtrace for cpu 1 | [ 4246.646861][ C1] Tainted: [L]=SOFTLOCKUP [ 4246.646863][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4246.646865][ C1] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:30) [ 4246.646870][ C1] Code: c7 c7 b8 57 8c b8 5b 5d 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 0c 24 89 f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f All code ======== 0: c7 c7 b8 57 8c b8 mov $0xb88c57b8,%edi 6: 5b pop %rbx 7: 5d pop %rbp 8: 41 5c pop %r12 a: e9 7b 44 8d ff jmp 0xffffffffff8d448a f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 16: 00 00 00 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: 90 nop 23: 90 nop 24: 90 nop 25: 90 nop 26: 90 nop 27: 90 nop 28: 90 nop 29: 90 nop 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 8b 0c 24 mov (%rsp),%rcx 32: 89 f6 mov %esi,%esi 34: 31 d2 xor %edx,%edx 36: e9 4f f0 ff ff jmp 0xfffffffffffff08a 3b: 66 data16 3c: 66 data16 3d: 2e cs 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 8b 0c 24 mov (%rsp),%rcx 8: 89 f6 mov %esi,%esi a: 31 d2 xor %edx,%edx c: e9 4f f0 ff ff jmp 0xfffffffffffff060 11: 66 data16 12: 66 data16 13: 2e cs 14: 0f .byte 0xf 15: 1f (bad) [ 4246.646873][ C1] RSP: 0018:ffffc900034b7a10 EFLAGS: 00000202 [ 4246.646876][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4246.646878][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4246.646880][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4246.646882][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4246.646884][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4246.646886][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4246.646888][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4246.646891][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4246.646893][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4246.646895][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4246.646897][ C1] PKRU: 55555554 [ 4246.646898][ C1] Call Trace: [ 4246.646899][ C1] [ 4246.646901][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4246.646906][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4246.646909][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4246.646913][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4246.646916][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4246.646920][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4246.646923][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4246.646926][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4246.646929][ C1] ? xa_store (lib/xarray.c:1734) [ 4246.646934][ C1] xa_store (lib/xarray.c:1734) [ 4246.646938][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4246.646941][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4246.646946][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4246.646949][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4246.646952][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.646957][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.646960][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4246.646965][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4246.646969][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4246.646973][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4246.646977][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4246.646981][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4246.646988][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4246.646992][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4246.646996][ C1] ksys_unshare (kernel/fork.c:3121) [ 4246.647000][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4246.647004][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4246.647007][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4246.647010][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4246.647013][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4246.647018][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4246.647022][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4246.647027][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4246.647030][ C1] RIP: 0033:0x7f439756d93b [ 4246.647033][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4246.647035][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4246.647038][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4246.647040][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4246.647043][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4246.647044][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4246.647046][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4246.647044][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4246.647046][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4246.647052][ C1] | [ 4246.647860][ C3] Tainted: [L]=SOFTLOCKUP [ 4246.647862][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4246.647864][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4246.647869][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4246.647873][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4246.647876][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4246.647878][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4246.647881][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4246.647882][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4246.647884][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4246.647886][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4246.647889][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4246.647893][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4246.647895][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4246.647896][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4246.647898][ C3] PKRU: 55555554 [ 4246.647899][ C3] Call Trace: [ 4246.647900][ C3] [ 4246.647902][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4246.647907][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4246.647912][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4246.647915][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4246.647919][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4246.647924][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4246.647927][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4246.647931][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4246.647934][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4246.647938][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4246.647941][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4246.647943][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4246.647946][ C3] ? xas_alloc (lib/xarray.c:378) [ 4246.647952][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4246.647955][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4246.647958][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4246.647961][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4246.647966][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4246.647969][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4246.647975][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.647978][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4246.647985][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4246.647990][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.647993][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4246.647996][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4246.647999][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4246.648002][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4246.648005][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4246.648011][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4246.648013][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4246.648017][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4246.648021][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4246.648024][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4246.648028][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4246.648031][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4246.648034][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.648038][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4246.648043][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4246.648047][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4246.648050][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4246.648055][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4246.648059][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.648062][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4246.648067][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4246.648071][ C3] handle_softirqs (kernel/softirq.c:579) [ 4246.648077][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4246.648080][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4246.648084][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4246.648087][ C3] [ 4246.648088][ C3] [ 4246.648090][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4246.648095][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4246.648098][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4246.648100][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4246.648103][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4246.648104][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4246.648106][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4246.648108][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4246.648110][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4246.648114][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4246.648120][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4246.648125][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4246.648128][ C3] ? xas_alloc (lib/xarray.c:378) [ 4246.648133][ C3] ? xas_alloc (lib/xarray.c:378) [ 4246.648135][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4246.648139][ C3] ? xas_alloc (lib/xarray.c:378) [ 4246.648142][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4246.648146][ C3] xas_alloc (lib/xarray.c:378) [ 4246.648151][ C3] xas_create (lib/xarray.c:685) [ 4246.648156][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4246.648161][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4246.648164][ C3] __xa_store (lib/xarray.c:1703) [ 4246.648168][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4246.648173][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4246.648175][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4246.648178][ C3] ? xa_store (lib/xarray.c:1734) [ 4246.648183][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4246.648187][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4246.648190][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4246.648194][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4246.648197][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4246.648200][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.648204][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4246.648207][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4246.648212][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4246.648215][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4246.648220][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4246.648223][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4246.648228][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4246.648234][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4246.648237][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4246.648243][ C3] ksys_unshare (kernel/fork.c:3121) [ 4246.648248][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4246.648252][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4246.648255][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4246.648258][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4246.648261][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4246.648268][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4246.648271][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4246.648276][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4246.648279][ C3] RIP: 0033:0x7f439756d93b [ 4246.648284][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4246.648286][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4246.648289][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4246.648291][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4246.648293][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4246.648294][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4246.648296][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4268.656125][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4268.656131][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4268.656135][ C0] softirqs last disabled at (0): 0x0 | [ 4268.656144][ C0] Tainted: [L]=SOFTLOCKUP [ 4268.656146][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4268.656148][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4268.656154][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4268.656157][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4268.656160][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4268.656162][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4268.656164][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4268.656166][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4268.656168][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4268.656170][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4268.656172][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4268.656176][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4268.656178][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4268.656180][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4268.656182][ C0] PKRU: 55555554 [ 4268.656183][ C0] Call Trace: [ 4268.656186][ C0] [ 4268.656190][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4268.656193][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4268.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4268.656202][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4268.656208][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4268.656211][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4268.656214][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4268.656216][ C0] ? xa_store (lib/xarray.c:1734) [ 4268.656222][ C0] xa_store (lib/xarray.c:1734) [ 4268.656226][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4268.656231][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4268.656236][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4268.656239][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4268.656242][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4268.656247][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4268.656250][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4268.656256][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4268.656260][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4268.656265][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4268.656269][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4268.656274][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4268.656281][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4268.656285][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4268.656290][ C0] ksys_unshare (kernel/fork.c:3121) [ 4268.656295][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4268.656298][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4268.656303][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4268.656306][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4268.656309][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4268.656316][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4268.656319][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4268.656324][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4268.656327][ C0] RIP: 0033:0x7f439756d93b [ 4268.656331][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4268.656334][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4268.656336][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4268.656339][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4268.656340][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4268.656342][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4268.656344][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4272.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4272.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4272.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4272.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4272.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4272.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:103 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 4272.669144][ C2] Code: 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d 59 01 48 89 da 48 29 ea <48> 83 fa 10 0f 8e c0 00 00 00 41 89 eb 41 83 e3 07 75 7d 48 85 d2 All code ======== 0: 89 fd mov %edi,%ebp 2: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 9: fc ff df c: 4d 89 d1 mov %r10,%r9 f: 48 c1 ed 03 shr $0x3,%rbp 13: 49 c1 e9 03 shr $0x3,%r9 17: 48 01 c5 add %rax,%rbp 1a: 49 01 c1 add %rax,%r9 1d: 48 89 e8 mov %rbp,%rax 20: 49 8d 59 01 lea 0x1(%r9),%rbx 24: 48 89 da mov %rbx,%rdx 27: 48 29 ea sub %rbp,%rdx 2a:* 48 83 fa 10 cmp $0x10,%rdx <-- trapping instruction 2e: 0f 8e c0 00 00 00 jle 0xf4 34: 41 89 eb mov %ebp,%r11d 37: 41 83 e3 07 and $0x7,%r11d 3b: 75 7d jne 0xba 3d: 48 85 d2 test %rdx,%rdx Code starting with the faulting instruction =========================================== 0: 48 83 fa 10 cmp $0x10,%rdx 4: 0f 8e c0 00 00 00 jle 0xca a: 41 89 eb mov %ebp,%r11d d: 41 83 e3 07 and $0x7,%r11d 11: 75 7d jne 0x90 13: 48 85 d2 test %rdx,%rdx [ 4272.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000202 [ 4272.669149][ C2] RAX: fffffbfff77dcb80 RBX: fffffbfff77dcb81 RCX: ffffffffb7cc5ea3 [ 4272.669151][ C2] RDX: 0000000000000001 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4272.669153][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4272.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4272.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4272.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4272.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4272.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4272.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4272.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4272.669171][ C2] PKRU: 55555554 [ 4272.669172][ C2] Call Trace: [ 4272.669174][ C2] [ 4272.669177][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4272.669182][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4272.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.669189][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.669192][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4272.669197][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4272.669200][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 4272.669210][ C2] xa_store (lib/xarray.c:1734) [ 4272.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4272.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4272.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4272.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4272.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4272.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4272.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4272.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4272.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4272.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4272.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 4272.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4272.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4272.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4272.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4272.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4272.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4272.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4272.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4272.669307][ C2] RIP: 0033:0x7f439756d93b [ 4272.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4272.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4272.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4272.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4272.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4272.669322][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4272.669324][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4272.669351][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4272.669356][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4272.669359][ C1] softirqs last disabled at (0): 0x0 | [ 4272.669368][ C1] Tainted: [L]=SOFTLOCKUP [ 4272.669370][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4272.669372][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4272.669376][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4272.669379][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4272.669382][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4272.669384][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4272.669386][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4272.669388][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4272.669390][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4272.669392][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4272.669394][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4272.669397][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4272.669399][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4272.669401][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4272.669403][ C1] PKRU: 55555554 [ 4272.669404][ C1] Call Trace: [ 4272.669405][ C1] [ 4272.669408][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4272.669411][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.669415][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.669418][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4272.669423][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4272.669426][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.669429][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.669431][ C1] ? xa_store (lib/xarray.c:1734) [ 4272.669437][ C1] xa_store (lib/xarray.c:1734) [ 4272.669441][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4272.669444][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4272.669449][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.669452][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.669455][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.669459][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.669463][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4272.669468][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4272.669472][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4272.669476][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4272.669480][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4272.669484][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4272.669491][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4272.669494][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4272.669498][ C1] ksys_unshare (kernel/fork.c:3121) [ 4272.669503][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4272.669506][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4272.669510][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4272.669513][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4272.669516][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4272.669521][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4272.669525][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4272.669529][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4272.669532][ C1] RIP: 0033:0x7f439756d93b [ 4272.669535][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4272.669538][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4272.669541][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4272.669543][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4272.669544][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4272.669546][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4272.669548][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4272.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4272.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4272.670146][ C3] softirqs last disabled at (0): 0x0 | [ 4272.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 4272.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4272.670163][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4272.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4272.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4272.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4272.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4272.670181][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4272.670183][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4272.670185][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4272.670188][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4272.670190][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4272.670195][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4272.670197][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4272.670199][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4272.670200][ C3] PKRU: 55555554 [ 4272.670202][ C3] Call Trace: [ 4272.670205][ C3] [ 4272.670207][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4272.670213][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4272.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4272.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4272.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4272.670230][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4272.670233][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4272.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4272.670241][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4272.670245][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4272.670247][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4272.670250][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4272.670253][ C3] ? xas_alloc (lib/xarray.c:378) [ 4272.670258][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4272.670263][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.670270][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4272.670275][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4272.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4272.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670289][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4272.670295][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4272.670301][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4272.670307][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4272.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4272.670314][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4272.670317][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4272.670323][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4272.670326][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4272.670329][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4272.670333][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4272.670338][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4272.670341][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4272.670344][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4272.670347][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670351][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4272.670355][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4272.670360][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4272.670363][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4272.670369][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4272.670373][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670376][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4272.670381][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4272.670385][ C3] handle_softirqs (kernel/softirq.c:579) [ 4272.670391][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4272.670395][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4272.670398][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4272.670402][ C3] [ 4272.670403][ C3] [ 4272.670405][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4272.670410][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4272.670414][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4272.670417][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4272.670420][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4272.670422][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4272.670424][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4272.670427][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4272.670429][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4272.670433][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4272.670439][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4272.670445][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4272.670448][ C3] ? xas_alloc (lib/xarray.c:378) [ 4272.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 4272.670456][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4272.670460][ C3] ? xas_alloc (lib/xarray.c:378) [ 4272.670462][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4272.670468][ C3] xas_alloc (lib/xarray.c:378) [ 4272.670472][ C3] xas_create (lib/xarray.c:685) [ 4272.670478][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4272.670482][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.670486][ C3] __xa_store (lib/xarray.c:1703) [ 4272.670491][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4272.670495][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.670498][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4272.670501][ C3] ? xa_store (lib/xarray.c:1734) [ 4272.670506][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4272.670510][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4272.670513][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4272.670518][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4272.670521][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4272.670524][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670528][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4272.670532][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4272.670536][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4272.670540][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4272.670544][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4272.670548][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4272.670553][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4272.670561][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4272.670564][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4272.670570][ C3] ksys_unshare (kernel/fork.c:3121) [ 4272.670574][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4272.670577][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4272.670581][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4272.670583][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4272.670587][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4272.670593][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4272.670596][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4272.670601][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4272.670605][ C3] RIP: 0033:0x7f439756d93b [ 4272.670609][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4272.670611][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4272.670614][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4272.670616][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4272.670618][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4272.670620][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4272.670622][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4296.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4296.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4296.656127][ C0] softirqs last disabled at (0): 0x0 | [ 4296.656135][ C0] Tainted: [L]=SOFTLOCKUP [ 4296.656137][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4296.656139][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4296.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4296.656146][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4296.656149][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4296.656151][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4296.656153][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4296.656155][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4296.656157][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4296.656159][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4296.656161][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4296.656165][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4296.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4296.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4296.656171][ C0] PKRU: 55555554 [ 4296.656172][ C0] Call Trace: [ 4296.656174][ C0] [ 4296.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4296.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4296.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4296.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4296.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4296.656195][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4296.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4296.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 4296.656207][ C0] xa_store (lib/xarray.c:1734) [ 4296.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4296.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4296.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4296.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4296.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4296.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4296.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4296.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4296.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4296.656246][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4296.656250][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4296.656254][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4296.656260][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4296.656264][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4296.656268][ C0] ksys_unshare (kernel/fork.c:3121) [ 4296.656272][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4296.656276][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4296.656279][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4296.656282][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4296.656286][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4296.656291][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4296.656295][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4296.656299][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4296.656302][ C0] RIP: 0033:0x7f439756d93b [ 4296.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4296.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4296.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4296.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4296.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4296.656316][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4296.656318][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4300.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4300.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4300.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4300.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4300.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4300.669139][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 4300.669143][ C2] Code: 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff 5b b8 01 00 00 00 5d 41 5c cc cc cc cc 41 bc 08 00 00 00 45 29 dc 49 8d 14 2c eb 0c 48 83 All code ======== 0: 00 00 add %al,(%rax) 2: 48 85 d2 test %rdx,%rdx 5: 0f 84 4c ff ff ff je 0xffffffffffffff57 b: 41 83 e2 07 and $0x7,%r10d f: 49 39 d1 cmp %rdx,%r9 12: 0f 85 34 ff ff ff jne 0xffffffffffffff4c 18: 45 3a 11 cmp (%r9),%r10b 1b: 0f 8d 2b ff ff ff jge 0xffffffffffffff4c 21: 5b pop %rbx 22: b8 01 00 00 00 mov $0x1,%eax 27: 5d pop %rbp 28: 41 5c pop %r12 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 41 bc 08 00 00 00 mov $0x8,%r12d 35: 45 29 dc sub %r11d,%r12d 38: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 3c: eb 0c jmp 0x4a 3e: 48 rex.W 3f: 83 .byte 0x83 Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 41 bc 08 00 00 00 mov $0x8,%r12d b: 45 29 dc sub %r11d,%r12d e: 49 8d 14 2c lea (%r12,%rbp,1),%rdx 12: eb 0c jmp 0x20 14: 48 rex.W 15: 83 .byte 0x83 [ 4300.669146][ C2] RSP: 0018:ffffc900034d7a10 EFLAGS: 00000246 [ 4300.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4300.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4300.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4300.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4300.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4300.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4300.669161][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4300.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4300.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4300.669168][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4300.669170][ C2] PKRU: 55555554 [ 4300.669171][ C2] Call Trace: [ 4300.669173][ C2] [ 4300.669174][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4300.669180][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4300.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4300.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4300.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 4300.669209][ C2] xa_store (lib/xarray.c:1734) [ 4300.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4300.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4300.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.669232][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4300.669241][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4300.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4300.669249][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4300.669253][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4300.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4300.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4300.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4300.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 4300.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4300.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4300.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4300.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4300.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4300.669295][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4300.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4300.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4300.669306][ C2] RIP: 0033:0x7f439756d93b [ 4300.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4300.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4300.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4300.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4300.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4300.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4300.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4300.669347][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4300.669352][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4300.669355][ C1] softirqs last disabled at (0): 0x0 | [ 4300.669364][ C1] Tainted: [L]=SOFTLOCKUP [ 4300.669365][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4300.669367][ C1] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 4300.669370][ C1] Code: ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 <48> 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e c0 00 00 All code ======== 0: ff (bad) 1: ff 48 39 decl 0x39(%rax) 4: c7 (bad) 5: 76 dd jbe 0xffffffffffffffe4 7: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 c: 48 89 fd mov %rdi,%rbp f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 16: fc ff df 19: 4d 89 d1 mov %r10,%r9 1c: 48 c1 ed 03 shr $0x3,%rbp 20: 49 c1 e9 03 shr $0x3,%r9 24: 48 01 c5 add %rax,%rbp 27: 49 01 c1 add %rax,%r9 2a:* 48 89 e8 mov %rbp,%rax <-- trapping instruction 2d: 49 8d 59 01 lea 0x1(%r9),%rbx 31: 48 89 da mov %rbx,%rdx 34: 48 29 ea sub %rbp,%rdx 37: 48 83 fa 10 cmp $0x10,%rdx 3b: 0f .byte 0xf 3c: 8e c0 mov %eax,%es ... Code starting with the faulting instruction =========================================== 0: 48 89 e8 mov %rbp,%rax 3: 49 8d 59 01 lea 0x1(%r9),%rbx 7: 48 89 da mov %rbx,%rdx a: 48 29 ea sub %rbp,%rdx d: 48 83 fa 10 cmp $0x10,%rdx 11: 0f .byte 0xf 12: 8e c0 mov %eax,%es ... [ 4300.669373][ C1] RSP: 0018:ffffc900034b79f8 EFLAGS: 00000282 [ 4300.669376][ C1] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4300.669378][ C1] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4300.669380][ C1] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4300.669382][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4300.669384][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4300.669386][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4300.669388][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4300.669392][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4300.669394][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4300.669395][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4300.669397][ C1] PKRU: 55555554 [ 4300.669399][ C1] Call Trace: [ 4300.669400][ C1] [ 4300.669402][ C1] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4300.669407][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4300.669411][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.669415][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.669418][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4300.669424][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4300.669427][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.669430][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.669432][ C1] ? xa_store (lib/xarray.c:1734) [ 4300.669437][ C1] xa_store (lib/xarray.c:1734) [ 4300.669441][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4300.669445][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4300.669450][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.669453][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.669455][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.669460][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.669464][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4300.669469][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4300.669473][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4300.669477][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4300.669481][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4300.669485][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4300.669491][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4300.669495][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4300.669499][ C1] ksys_unshare (kernel/fork.c:3121) [ 4300.669503][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4300.669507][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4300.669511][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4300.669513][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4300.669517][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4300.669522][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4300.669525][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4300.669530][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4300.669532][ C1] RIP: 0033:0x7f439756d93b [ 4300.669535][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4300.669537][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4300.669540][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4300.669542][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4300.669544][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4300.669546][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4300.669548][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4300.670132][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4300.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4300.670145][ C3] softirqs last disabled at (0): 0x0 | [ 4300.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 4300.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4300.670161][ C3] RIP: 0010:__kasan_check_read (mm/kasan/shadow.c:31) [ 4300.670168][ C3] Code: 41 5c e9 7b 44 8d ff 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 0c 24 <89> f6 31 d2 e9 4f f0 ff ff 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f All code ======== 0: 41 5c pop %r12 2: e9 7b 44 8d ff jmp 0xffffffffff8d4482 7: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) e: 00 00 00 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: 90 nop 1c: 90 nop 1d: 90 nop 1e: 90 nop 1f: 90 nop 20: 90 nop 21: 90 nop 22: f3 0f 1e fa endbr64 26: 48 8b 0c 24 mov (%rsp),%rcx 2a:* 89 f6 mov %esi,%esi <-- trapping instruction 2c: 31 d2 xor %edx,%edx 2e: e9 4f f0 ff ff jmp 0xfffffffffffff082 33: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 3a: 00 00 00 00 3e: 0f .byte 0xf 3f: 1f (bad) Code starting with the faulting instruction =========================================== 0: 89 f6 mov %esi,%esi 2: 31 d2 xor %edx,%edx 4: e9 4f f0 ff ff jmp 0xfffffffffffff058 9: 66 66 2e 0f 1f 84 00 data16 cs nopw 0x0(%rax,%rax,1) 10: 00 00 00 00 14: 0f .byte 0xf 15: 1f (bad) [ 4300.670172][ C3] RSP: 0018:ffffc90000270a40 EFLAGS: 00000202 [ 4300.670175][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4300.670177][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4300.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4300.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4300.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4300.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4300.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4300.670193][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4300.670195][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4300.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4300.670199][ C3] PKRU: 55555554 [ 4300.670200][ C3] Call Trace: [ 4300.670204][ C3] [ 4300.670206][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4300.670213][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4300.670218][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4300.670223][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4300.670226][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4300.670230][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4300.670235][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4300.670238][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4300.670242][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4300.670246][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4300.670250][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4300.670252][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4300.670255][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4300.670258][ C3] ? xas_alloc (lib/xarray.c:378) [ 4300.670264][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4300.670268][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.670271][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.670275][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4300.670280][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4300.670284][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4300.670289][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670293][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4300.670299][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4300.670305][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670308][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4300.670311][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4300.670314][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4300.670318][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4300.670321][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4300.670328][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4300.670331][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4300.670334][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4300.670338][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4300.670342][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4300.670346][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4300.670349][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4300.670352][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670355][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4300.670360][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4300.670365][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4300.670368][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4300.670373][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4300.670377][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670381][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4300.670386][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4300.670390][ C3] handle_softirqs (kernel/softirq.c:579) [ 4300.670396][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4300.670399][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4300.670402][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4300.670406][ C3] [ 4300.670407][ C3] [ 4300.670409][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4300.670414][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4300.670418][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4300.670421][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4300.670424][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4300.670426][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4300.670428][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4300.670430][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4300.670433][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4300.670436][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4300.670442][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4300.670448][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4300.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 4300.670456][ C3] ? xas_alloc (lib/xarray.c:378) [ 4300.670459][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4300.670463][ C3] ? xas_alloc (lib/xarray.c:378) [ 4300.670465][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4300.670470][ C3] xas_alloc (lib/xarray.c:378) [ 4300.670475][ C3] xas_create (lib/xarray.c:685) [ 4300.670481][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4300.670486][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.670490][ C3] __xa_store (lib/xarray.c:1703) [ 4300.670494][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4300.670499][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.670502][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4300.670505][ C3] ? xa_store (lib/xarray.c:1734) [ 4300.670509][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4300.670513][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4300.670517][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4300.670521][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4300.670524][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4300.670527][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670531][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4300.670534][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4300.670538][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4300.670542][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4300.670547][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4300.670550][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4300.670555][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4300.670563][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4300.670566][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4300.670572][ C3] ksys_unshare (kernel/fork.c:3121) [ 4300.670576][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4300.670579][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4300.670582][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4300.670585][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4300.670588][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4300.670594][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4300.670598][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4300.670603][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4300.670606][ C3] RIP: 0033:0x7f439756d93b [ 4300.670609][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4300.670612][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4300.670615][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4300.670617][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4300.670619][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4300.670620][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4300.670622][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4324.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4324.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4324.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4324.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4324.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4324.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4324.656145][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4324.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4324.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4324.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4324.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4324.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4324.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4324.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4324.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4324.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4324.656167][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4324.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4324.656170][ C0] PKRU: 55555554 [ 4324.656172][ C0] Call Trace: [ 4324.656173][ C0] [ 4324.656175][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4324.656179][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.656183][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.656186][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4324.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4324.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 4324.656205][ C0] xa_store (lib/xarray.c:1734) [ 4324.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4324.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4324.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.656220][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.656223][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.656230][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4324.656236][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4324.656240][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4324.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4324.656248][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4324.656253][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4324.656259][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4324.656263][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4324.656267][ C0] ksys_unshare (kernel/fork.c:3121) [ 4324.656271][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4324.656275][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4324.656278][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4324.656281][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4324.656284][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4324.656289][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4324.656293][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4324.656297][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4324.656301][ C0] RIP: 0033:0x7f439756d93b [ 4324.656303][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4324.656306][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4324.656309][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4324.656311][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4324.656313][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4324.656315][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4324.656317][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4324.680813][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4324.681090][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4324.681336][ C1] NMI backtrace for cpu 1 | [ 4324.681345][ C1] Tainted: [L]=SOFTLOCKUP [ 4324.681347][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4324.681349][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4324.681354][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4324.681357][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4324.681360][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4324.681362][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4324.681364][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4324.681366][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4324.681368][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4324.681370][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4324.681372][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4324.681375][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4324.681377][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4324.681378][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4324.681380][ C1] PKRU: 55555554 [ 4324.681381][ C1] Call Trace: [ 4324.681382][ C1] [ 4324.681384][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4324.681388][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.681391][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.681394][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4324.681399][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4324.681402][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.681405][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.681407][ C1] ? xa_store (lib/xarray.c:1734) [ 4324.681412][ C1] xa_store (lib/xarray.c:1734) [ 4324.681416][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4324.681419][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4324.681425][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.681427][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.681430][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.681434][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.681438][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4324.681443][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4324.681447][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4324.681451][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4324.681455][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4324.681459][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4324.681465][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4324.681469][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4324.681473][ C1] ksys_unshare (kernel/fork.c:3121) [ 4324.681477][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4324.681481][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4324.681484][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4324.681487][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4324.681491][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4324.681495][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4324.681499][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4324.681503][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4324.681506][ C1] RIP: 0033:0x7f439756d93b [ 4324.681509][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4324.681512][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4324.681514][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4324.681517][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4324.681518][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4324.681520][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4324.681522][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4324.681520][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4324.681522][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4324.681527][ C1] | [ 4324.682344][ C3] Tainted: [L]=SOFTLOCKUP [ 4324.682346][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4324.682348][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4324.682354][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4324.682357][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4324.682361][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4324.682363][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4324.682365][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4324.682367][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4324.682369][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4324.682371][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4324.682374][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4324.682378][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4324.682380][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4324.682382][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4324.682384][ C3] PKRU: 55555554 [ 4324.682385][ C3] Call Trace: [ 4324.682386][ C3] [ 4324.682387][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4324.682393][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4324.682398][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4324.682401][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4324.682405][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4324.682409][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4324.682413][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4324.682417][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4324.682420][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4324.682423][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4324.682425][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4324.682428][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4324.682431][ C3] ? xas_alloc (lib/xarray.c:378) [ 4324.682436][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4324.682440][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.682442][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.682445][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4324.682451][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4324.682454][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4324.682460][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682463][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4324.682470][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4324.682474][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682477][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4324.682480][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4324.682484][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4324.682487][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4324.682489][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4324.682495][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4324.682498][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4324.682501][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4324.682505][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4324.682509][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4324.682512][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4324.682515][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4324.682519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682522][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4324.682527][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4324.682531][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4324.682534][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4324.682539][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4324.682543][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682546][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4324.682551][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4324.682555][ C3] handle_softirqs (kernel/softirq.c:579) [ 4324.682560][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4324.682564][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4324.682567][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4324.682570][ C3] [ 4324.682571][ C3] [ 4324.682573][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4324.682578][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4324.682581][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4324.682584][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4324.682586][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4324.682588][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4324.682590][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4324.682592][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4324.682594][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4324.682598][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4324.682603][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4324.682608][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4324.682612][ C3] ? xas_alloc (lib/xarray.c:378) [ 4324.682616][ C3] ? xas_alloc (lib/xarray.c:378) [ 4324.682619][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4324.682623][ C3] ? xas_alloc (lib/xarray.c:378) [ 4324.682625][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4324.682630][ C3] xas_alloc (lib/xarray.c:378) [ 4324.682634][ C3] xas_create (lib/xarray.c:685) [ 4324.682640][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4324.682644][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.682648][ C3] __xa_store (lib/xarray.c:1703) [ 4324.682652][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4324.682656][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.682659][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4324.682662][ C3] ? xa_store (lib/xarray.c:1734) [ 4324.682667][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4324.682671][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4324.682674][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4324.682678][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4324.682681][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4324.682684][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682688][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4324.682691][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4324.682696][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4324.682699][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4324.682704][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4324.682707][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4324.682712][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4324.682718][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4324.682722][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4324.682727][ C3] ksys_unshare (kernel/fork.c:3121) [ 4324.682732][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4324.682735][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4324.682738][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4324.682741][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4324.682745][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4324.682751][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4324.682755][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4324.682760][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4324.682763][ C3] RIP: 0033:0x7f439756d93b [ 4324.682768][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4324.682770][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4324.682773][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4324.682774][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4324.682776][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4324.682777][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4324.682779][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4328.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4328.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4328.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4328.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4328.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4328.669140][ C2] RIP: 0010:kasan_check_range (./include/linux/kasan.h:65 mm/kasan/generic.c:129 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 4328.669144][ C2] Code: ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df 4d 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 <48> 89 e8 49 8d 59 01 48 89 da 48 29 ea 48 83 fa 10 0f 8e c0 00 00 All code ======== 0: ff (bad) 1: ff 48 39 decl 0x39(%rax) 4: c7 (bad) 5: 76 dd jbe 0xffffffffffffffe4 7: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 c: 48 89 fd mov %rdi,%rbp f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 16: fc ff df 19: 4d 89 d1 mov %r10,%r9 1c: 48 c1 ed 03 shr $0x3,%rbp 20: 49 c1 e9 03 shr $0x3,%r9 24: 48 01 c5 add %rax,%rbp 27: 49 01 c1 add %rax,%r9 2a:* 48 89 e8 mov %rbp,%rax <-- trapping instruction 2d: 49 8d 59 01 lea 0x1(%r9),%rbx 31: 48 89 da mov %rbx,%rdx 34: 48 29 ea sub %rbp,%rdx 37: 48 83 fa 10 cmp $0x10,%rdx 3b: 0f .byte 0xf 3c: 8e c0 mov %eax,%es ... Code starting with the faulting instruction =========================================== 0: 48 89 e8 mov %rbp,%rax 3: 49 8d 59 01 lea 0x1(%r9),%rbx 7: 48 89 da mov %rbx,%rdx a: 48 29 ea sub %rbp,%rdx d: 48 83 fa 10 cmp $0x10,%rdx 11: 0f .byte 0xf 12: 8e c0 mov %eax,%es ... [ 4328.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 4328.669150][ C2] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4328.669152][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4328.669154][ C2] RBP: fffffbfff77dcb80 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4328.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4328.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4328.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4328.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4328.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4328.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4328.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4328.669171][ C2] PKRU: 55555554 [ 4328.669173][ C2] Call Trace: [ 4328.669174][ C2] [ 4328.669177][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4328.669181][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4328.669185][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4328.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4328.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4328.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4328.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4328.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4328.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 4328.669211][ C2] xa_store (lib/xarray.c:1734) [ 4328.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4328.669218][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4328.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4328.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4328.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4328.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4328.669237][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4328.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4328.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4328.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4328.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4328.669258][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4328.669264][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4328.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4328.669272][ C2] ksys_unshare (kernel/fork.c:3121) [ 4328.669276][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4328.669280][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4328.669283][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4328.669286][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4328.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4328.669295][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4328.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4328.669303][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4328.669305][ C2] RIP: 0033:0x7f439756d93b [ 4328.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4328.669312][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4328.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4328.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4328.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4328.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4328.669322][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4348.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4348.670140][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4348.670144][ C3] softirqs last disabled at (0): 0x0 | [ 4348.670155][ C3] Tainted: [L]=SOFTLOCKUP [ 4348.670157][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4348.670159][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4348.670166][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4348.670170][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4348.670173][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4348.670175][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4348.670177][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4348.670179][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4348.670181][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4348.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4348.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4348.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4348.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4348.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4348.670196][ C3] PKRU: 55555554 [ 4348.670197][ C3] Call Trace: [ 4348.670201][ C3] [ 4348.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4348.670207][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4348.670212][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4348.670215][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4348.670220][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4348.670224][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4348.670227][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4348.670231][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4348.670234][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4348.670237][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4348.670240][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4348.670243][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4348.670245][ C3] ? xas_alloc (lib/xarray.c:378) [ 4348.670250][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4348.670255][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4348.670258][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4348.670262][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4348.670268][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4348.670272][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4348.670277][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670281][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4348.670287][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4348.670293][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670296][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4348.670299][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4348.670302][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4348.670305][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4348.670308][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4348.670314][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4348.670317][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4348.670320][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4348.670324][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4348.670328][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4348.670332][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4348.670335][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4348.670338][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670342][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4348.670346][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4348.670351][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4348.670353][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4348.670359][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4348.670362][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670366][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4348.670370][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4348.670375][ C3] handle_softirqs (kernel/softirq.c:579) [ 4348.670380][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4348.670384][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4348.670387][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4348.670391][ C3] [ 4348.670392][ C3] [ 4348.670394][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4348.670399][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4348.670402][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4348.670405][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4348.670408][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4348.670410][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4348.670411][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4348.670413][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4348.670415][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4348.670419][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4348.670425][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4348.670431][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4348.670434][ C3] ? xas_alloc (lib/xarray.c:378) [ 4348.670439][ C3] ? xas_alloc (lib/xarray.c:378) [ 4348.670442][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4348.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 4348.670448][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4348.670454][ C3] xas_alloc (lib/xarray.c:378) [ 4348.670458][ C3] xas_create (lib/xarray.c:685) [ 4348.670464][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4348.670468][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4348.670472][ C3] __xa_store (lib/xarray.c:1703) [ 4348.670476][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4348.670481][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4348.670483][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4348.670486][ C3] ? xa_store (lib/xarray.c:1734) [ 4348.670491][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4348.670495][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4348.670498][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4348.670503][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4348.670506][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4348.670509][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670513][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4348.670516][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4348.670521][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4348.670525][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4348.670529][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4348.670533][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4348.670537][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4348.670545][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4348.670548][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4348.670554][ C3] ksys_unshare (kernel/fork.c:3121) [ 4348.670558][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4348.670562][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4348.670565][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4348.670568][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4348.670571][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4348.670577][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4348.670581][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4348.670585][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4348.670589][ C3] RIP: 0033:0x7f439756d93b [ 4348.670592][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4348.670595][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4348.670598][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4348.670600][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4348.670601][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4348.670603][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4348.670605][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4352.656118][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4352.656123][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4352.656126][ C0] softirqs last disabled at (0): 0x0 | [ 4352.656134][ C0] Tainted: [L]=SOFTLOCKUP [ 4352.656136][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4352.656137][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4352.656141][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4352.656144][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4352.656147][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4352.656149][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4352.656151][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4352.656153][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4352.656155][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4352.656157][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4352.656159][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4352.656163][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4352.656165][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4352.656166][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4352.656168][ C0] PKRU: 55555554 [ 4352.656169][ C0] Call Trace: [ 4352.656171][ C0] [ 4352.656173][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4352.656177][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4352.656180][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4352.656184][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4352.656189][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4352.656192][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4352.656195][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4352.656198][ C0] ? xa_store (lib/xarray.c:1734) [ 4352.656203][ C0] xa_store (lib/xarray.c:1734) [ 4352.656207][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4352.656211][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4352.656216][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4352.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4352.656222][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4352.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4352.656229][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4352.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4352.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4352.656243][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4352.656247][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4352.656252][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4352.656258][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4352.656262][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4352.656266][ C0] ksys_unshare (kernel/fork.c:3121) [ 4352.656270][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4352.656274][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4352.656277][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4352.656280][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4352.656284][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4352.656289][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4352.656293][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4352.656297][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4352.656301][ C0] RIP: 0033:0x7f439756d93b [ 4352.656303][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4352.656306][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4352.656309][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4352.656311][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4352.656313][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4352.656315][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4352.656317][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4352.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4352.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4352.669129][ C1] softirqs last disabled at (0): 0x0 | [ 4352.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4352.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4352.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4352.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4352.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4352.669150][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4352.669152][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4352.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4352.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4352.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4352.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4352.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4352.669166][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4352.669168][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4352.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4352.669172][ C1] PKRU: 55555554 [ 4352.669173][ C1] Call Trace: [ 4352.669175][ C1] [ 4352.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4352.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4352.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4352.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4352.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4352.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4352.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4352.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 4352.669206][ C1] xa_store (lib/xarray.c:1734) [ 4352.669210][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4352.669213][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4352.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4352.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4352.669224][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4352.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4352.669232][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4352.669237][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4352.669241][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4352.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4352.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4352.669254][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4352.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4352.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4352.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 4352.669273][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4352.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4352.669280][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4352.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4352.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4352.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4352.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4352.669299][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4352.669302][ C1] RIP: 0033:0x7f439756d93b [ 4352.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4352.669307][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4352.669310][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4352.669312][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4352.669314][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4352.669316][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4352.669318][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4356.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4356.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4356.669127][ C2] softirqs last disabled at (0): 0x0 | [ 4356.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4356.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4356.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4356.669143][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4356.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4356.669149][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4356.669151][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4356.669153][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4356.669155][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4356.669157][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4356.669159][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4356.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4356.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4356.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4356.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4356.669171][ C2] PKRU: 55555554 [ 4356.669172][ C2] Call Trace: [ 4356.669175][ C2] [ 4356.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4356.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4356.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4356.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4356.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4356.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4356.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4356.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 4356.669208][ C2] xa_store (lib/xarray.c:1734) [ 4356.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4356.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4356.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4356.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4356.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4356.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4356.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4356.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4356.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4356.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4356.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4356.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4356.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4356.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4356.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4356.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4356.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4356.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4356.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4356.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4356.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4356.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4356.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4356.669304][ C2] RIP: 0033:0x7f439756d93b [ 4356.669306][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4356.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4356.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4356.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4356.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4356.669317][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4356.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4376.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4376.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4376.670146][ C3] softirqs last disabled at (0): 0x0 | [ 4376.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 4376.670160][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4376.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4376.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4376.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4376.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4376.670178][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4376.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4376.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4376.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4376.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4376.670189][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4376.670194][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4376.670196][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4376.670197][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4376.670199][ C3] PKRU: 55555554 [ 4376.670201][ C3] Call Trace: [ 4376.670205][ C3] [ 4376.670206][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4376.670212][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4376.670218][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4376.670221][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4376.670226][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4376.670231][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4376.670234][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4376.670238][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4376.670241][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4376.670244][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4376.670247][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4376.670249][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4376.670252][ C3] ? xas_alloc (lib/xarray.c:378) [ 4376.670258][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4376.670262][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4376.670266][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4376.670269][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4376.670274][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4376.670279][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4376.670284][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670289][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4376.670295][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4376.670300][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670303][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4376.670306][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4376.670310][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4376.670313][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4376.670315][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4376.670321][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4376.670324][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4376.670327][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4376.670331][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4376.670335][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4376.670338][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4376.670341][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4376.670345][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670348][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4376.670352][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4376.670357][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4376.670360][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4376.670365][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4376.670369][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670372][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4376.670377][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4376.670382][ C3] handle_softirqs (kernel/softirq.c:579) [ 4376.670387][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4376.670391][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4376.670394][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4376.670398][ C3] [ 4376.670399][ C3] [ 4376.670400][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4376.670406][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4376.670409][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4376.670411][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4376.670414][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4376.670416][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4376.670418][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4376.670420][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4376.670422][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4376.670426][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4376.670431][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4376.670437][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4376.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 4376.670445][ C3] ? xas_alloc (lib/xarray.c:378) [ 4376.670448][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4376.670452][ C3] ? xas_alloc (lib/xarray.c:378) [ 4376.670455][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4376.670460][ C3] xas_alloc (lib/xarray.c:378) [ 4376.670465][ C3] xas_create (lib/xarray.c:685) [ 4376.670470][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4376.670475][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4376.670478][ C3] __xa_store (lib/xarray.c:1703) [ 4376.670483][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4376.670487][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4376.670490][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4376.670493][ C3] ? xa_store (lib/xarray.c:1734) [ 4376.670497][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4376.670501][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4376.670504][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4376.670509][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4376.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4376.670514][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4376.670522][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4376.670526][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4376.670530][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4376.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4376.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4376.670543][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4376.670551][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4376.670555][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4376.670560][ C3] ksys_unshare (kernel/fork.c:3121) [ 4376.670564][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4376.670567][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4376.670571][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4376.670573][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4376.670577][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4376.670583][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4376.670587][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4376.670591][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4376.670595][ C3] RIP: 0033:0x7f439756d93b [ 4376.670599][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4376.670602][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4376.670605][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4376.670606][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4376.670608][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4376.670610][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4376.670612][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4380.656123][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4380.656130][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4380.656133][ C0] softirqs last disabled at (0): 0x0 | [ 4380.656143][ C0] Tainted: [L]=SOFTLOCKUP [ 4380.656144][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4380.656146][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4380.656152][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4380.656156][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4380.656158][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4380.656160][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4380.656162][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4380.656164][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4380.656166][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4380.656168][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4380.656170][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4380.656174][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4380.656176][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4380.656178][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4380.656179][ C0] PKRU: 55555554 [ 4380.656180][ C0] Call Trace: [ 4380.656182][ C0] [ 4380.656184][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4380.656188][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4380.656193][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4380.656196][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4380.656201][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4380.656204][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4380.656207][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4380.656210][ C0] ? xa_store (lib/xarray.c:1734) [ 4380.656215][ C0] xa_store (lib/xarray.c:1734) [ 4380.656219][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4380.656223][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4380.656228][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4380.656231][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4380.656234][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4380.656239][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4380.656243][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4380.656248][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4380.656252][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4380.656257][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4380.656261][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4380.656265][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4380.656272][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4380.656276][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4380.656281][ C0] ksys_unshare (kernel/fork.c:3121) [ 4380.656286][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4380.656289][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4380.656294][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4380.656297][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4380.656300][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4380.656306][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4380.656309][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4380.656314][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4380.656318][ C0] RIP: 0033:0x7f439756d93b [ 4380.656321][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4380.656324][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4380.656327][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4380.656329][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4380.656331][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4380.656333][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4380.656335][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4380.669121][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4380.669126][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4380.669129][ C1] softirqs last disabled at (0): 0x0 | [ 4380.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 4380.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4380.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4380.669146][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4380.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4380.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4380.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4380.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4380.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4380.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4380.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4380.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4380.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4380.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4380.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4380.669172][ C1] PKRU: 55555554 [ 4380.669173][ C1] Call Trace: [ 4380.669175][ C1] [ 4380.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4380.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4380.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4380.669188][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4380.669193][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4380.669196][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4380.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4380.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 4380.669207][ C1] xa_store (lib/xarray.c:1734) [ 4380.669211][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4380.669214][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4380.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4380.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4380.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4380.669229][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4380.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4380.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4380.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4380.669246][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4380.669250][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4380.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4380.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4380.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4380.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 4380.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4380.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4380.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4380.669283][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4380.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4380.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4380.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4380.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4380.669303][ C1] RIP: 0033:0x7f439756d93b [ 4380.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4380.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4380.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4380.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4380.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4380.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4380.669318][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4384.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4384.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4384.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4384.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4384.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4384.669140][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:177 mm/kasan/generic.c:189) [ 4384.669144][ C2] Code: ff ff ff ff ff ff fe 48 39 c7 77 23 44 89 c2 e8 b7 e7 ff ff 83 f0 01 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff <48> 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff All code ======== 0: ff (bad) 1: ff (bad) 2: ff (bad) 3: ff (bad) 4: ff (bad) 5: ff (bad) 6: fe 48 39 decb 0x39(%rax) 9: c7 (bad) a: 77 23 ja 0x2f c: 44 89 c2 mov %r8d,%edx f: e8 b7 e7 ff ff call 0xffffffffffffe7cb 14: 83 f0 01 xor $0x1,%eax 17: 5b pop %rbx 18: 5d pop %rbp 19: 41 5c pop %r12 1b: c3 ret 1c: cc int3 1d: cc int3 1e: cc int3 1f: cc int3 20: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 27: 7f ff ff 2a:* 48 39 c7 cmp %rax,%rdi <-- trapping instruction 2d: 76 dd jbe 0xc 2f: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 34: 48 89 fd mov %rdi,%rbp 37: 48 rex.W 38: b8 00 00 00 00 mov $0x0,%eax 3d: 00 fc add %bh,%ah 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 48 39 c7 cmp %rax,%rdi 3: 76 dd jbe 0xffffffffffffffe2 5: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 a: 48 89 fd mov %rdi,%rbp d: 48 rex.W e: b8 00 00 00 00 mov $0x0,%eax 13: 00 fc add %bh,%ah 15: ff .byte 0xff [ 4384.669147][ C2] RSP: 0018:ffffc900034d79f8 EFLAGS: 00000282 [ 4384.669149][ C2] RAX: ffff7fffffffffff RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4384.669152][ C2] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4384.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4384.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4384.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4384.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4384.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4384.669165][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4384.669167][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4384.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4384.669170][ C2] PKRU: 55555554 [ 4384.669172][ C2] Call Trace: [ 4384.669174][ C2] [ 4384.669176][ C2] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4384.669181][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4384.669184][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4384.669188][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4384.669191][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4384.669196][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4384.669199][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4384.669202][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4384.669204][ C2] ? xa_store (lib/xarray.c:1734) [ 4384.669210][ C2] xa_store (lib/xarray.c:1734) [ 4384.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4384.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4384.669223][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4384.669226][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4384.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4384.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4384.669236][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4384.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4384.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4384.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4384.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4384.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4384.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4384.669269][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4384.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 4384.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4384.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4384.669284][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4384.669287][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4384.669290][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4384.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4384.669299][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4384.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4384.669307][ C2] RIP: 0033:0x7f439756d93b [ 4384.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4384.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4384.669316][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4384.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4384.669320][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4384.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4384.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4402.693003][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4402.693279][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4402.693673][ C1] NMI backtrace for cpu 1 | [ 4402.693683][ C1] Tainted: [L]=SOFTLOCKUP [ 4402.693685][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4402.693687][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4402.693691][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4402.693695][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4402.693697][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4402.693699][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4402.693701][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4402.693703][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4402.693705][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4402.693707][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4402.693709][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4402.693713][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4402.693714][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4402.693716][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4402.693718][ C1] PKRU: 55555554 [ 4402.693719][ C1] Call Trace: [ 4402.693720][ C1] [ 4402.693722][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4402.693725][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4402.693729][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4402.693732][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4402.693737][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4402.693740][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4402.693743][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4402.693745][ C1] ? xa_store (lib/xarray.c:1734) [ 4402.693750][ C1] xa_store (lib/xarray.c:1734) [ 4402.693754][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4402.693757][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4402.693761][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4402.693764][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4402.693767][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.693771][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.693775][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4402.693780][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4402.693784][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4402.693788][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4402.693792][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4402.693796][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4402.693803][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4402.693806][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4402.693810][ C1] ksys_unshare (kernel/fork.c:3121) [ 4402.693815][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4402.693818][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4402.693822][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4402.693824][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4402.693828][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4402.693833][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4402.693837][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4402.693841][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4402.693844][ C1] RIP: 0033:0x7f439756d93b [ 4402.693847][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4402.693849][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4402.693852][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4402.693854][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4402.693855][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4402.693857][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4402.693859][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4402.693857][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4402.693859][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4402.693865][ C1] | [ 4402.694681][ C3] Tainted: [L]=SOFTLOCKUP [ 4402.694683][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4402.694685][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4402.694690][ C3] Code: 00 00 fc ff df 49 01 c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 <8b> 45 00 89 44 24 40 85 c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 All code ======== 0: 00 00 add %al,(%rax) 2: fc cld 3: ff lcall (bad) 4: df 49 01 fisttps 0x1(%rcx) 7: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) b: 03 be 04 00 00 00 add 0x4(%rsi),%edi 11: 48 89 ef mov %rbp,%rdi 14: e8 5d b8 c7 fd call 0xfffffffffdc7b876 19: 41 0f b6 06 movzbl (%r14),%eax 1d: 41 38 c5 cmp %al,%r13b 20: 7c 08 jl 0x2a 22: 84 c0 test %al,%al 24: 0f 85 8d 07 00 00 jne 0x7b7 2a:* 8b 45 00 mov 0x0(%rbp),%eax <-- trapping instruction 2d: 89 44 24 40 mov %eax,0x40(%rsp) 31: 85 c0 test %eax,%eax 33: 0f 85 6e 01 00 00 jne 0x1a7 39: 48 89 ef mov %rbp,%rdi 3c: be .byte 0xbe 3d: 04 00 add $0x0,%al ... Code starting with the faulting instruction =========================================== 0: 8b 45 00 mov 0x0(%rbp),%eax 3: 89 44 24 40 mov %eax,0x40(%rsp) 7: 85 c0 test %eax,%eax 9: 0f 85 6e 01 00 00 jne 0x17d f: 48 89 ef mov %rbp,%rdi 12: be .byte 0xbe 13: 04 00 add $0x0,%al ... [ 4402.694693][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000246 [ 4402.694696][ C3] RAX: 0000000000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4402.694698][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4402.694700][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4402.694702][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4402.694705][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4402.694707][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4402.694709][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4402.694713][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4402.694715][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4402.694717][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4402.694719][ C3] PKRU: 55555554 [ 4402.694720][ C3] Call Trace: [ 4402.694721][ C3] [ 4402.694722][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4402.694728][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4402.694732][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4402.694735][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4402.694738][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4402.694743][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4402.694747][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4402.694750][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4402.694753][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4402.694757][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4402.694760][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4402.694762][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4402.694765][ C3] ? xas_alloc (lib/xarray.c:378) [ 4402.694770][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4402.694773][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4402.694776][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4402.694779][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4402.694784][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4402.694788][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4402.694793][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.694796][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4402.694802][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4402.694807][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.694810][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4402.694813][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4402.694816][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4402.694819][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4402.694821][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4402.694826][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4402.694829][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4402.694831][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4402.694836][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4402.694839][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4402.694843][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4402.694845][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4402.694849][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.694852][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4402.694857][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4402.694861][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4402.694864][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4402.694869][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4402.694873][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.694876][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4402.694881][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4402.694885][ C3] handle_softirqs (kernel/softirq.c:579) [ 4402.694890][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4402.694894][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4402.694897][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4402.694900][ C3] [ 4402.694901][ C3] [ 4402.694903][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4402.694907][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4402.694910][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4402.694913][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4402.694915][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4402.694917][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4402.694919][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4402.694921][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4402.694923][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4402.694927][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4402.694932][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4402.694938][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4402.694941][ C3] ? xas_alloc (lib/xarray.c:378) [ 4402.694945][ C3] ? xas_alloc (lib/xarray.c:378) [ 4402.694948][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4402.694953][ C3] ? xas_alloc (lib/xarray.c:378) [ 4402.694955][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4402.694960][ C3] xas_alloc (lib/xarray.c:378) [ 4402.694964][ C3] xas_create (lib/xarray.c:685) [ 4402.694970][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4402.694974][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4402.694978][ C3] __xa_store (lib/xarray.c:1703) [ 4402.694981][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4402.694986][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4402.694989][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4402.694991][ C3] ? xa_store (lib/xarray.c:1734) [ 4402.694996][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4402.695000][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4402.695003][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4402.695008][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4402.695010][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4402.695013][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.695017][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4402.695020][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4402.695024][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4402.695028][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4402.695033][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4402.695036][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4402.695041][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4402.695047][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4402.695051][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4402.695056][ C3] ksys_unshare (kernel/fork.c:3121) [ 4402.695061][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4402.695065][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4402.695068][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4402.695071][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4402.695074][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4402.695080][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4402.695084][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4402.695088][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4402.695092][ C3] RIP: 0033:0x7f439756d93b [ 4402.695097][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4402.695099][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4402.695102][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4402.695104][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4402.695106][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4402.695108][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4402.695109][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4408.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4408.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4408.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4408.656136][ C0] Tainted: [L]=SOFTLOCKUP [ 4408.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4408.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4408.656144][ C0] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4408.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4408.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4408.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4408.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4408.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4408.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4408.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4408.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4408.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4408.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4408.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4408.656171][ C0] PKRU: 55555554 [ 4408.656173][ C0] Call Trace: [ 4408.656174][ C0] [ 4408.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4408.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4408.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4408.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4408.656191][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4408.656194][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4408.656197][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4408.656200][ C0] ? xa_store (lib/xarray.c:1734) [ 4408.656205][ C0] xa_store (lib/xarray.c:1734) [ 4408.656209][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4408.656212][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4408.656217][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4408.656219][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4408.656222][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4408.656227][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4408.656230][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4408.656235][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4408.656239][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4408.656244][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4408.656247][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4408.656252][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4408.656258][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4408.656262][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4408.656266][ C0] ksys_unshare (kernel/fork.c:3121) [ 4408.656270][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4408.656274][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4408.656277][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4408.656280][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4408.656284][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4408.656289][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4408.656293][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4408.656297][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4408.656300][ C0] RIP: 0033:0x7f439756d93b [ 4408.656302][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4408.656305][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4408.656308][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4408.656310][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4408.656312][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4408.656314][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4408.656316][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4412.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4412.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4412.669129][ C2] softirqs last disabled at (0): 0x0 | [ 4412.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 4412.669139][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4412.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4412.669146][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4412.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4412.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4412.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4412.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4412.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4412.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4412.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4412.669165][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4412.669168][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4412.669170][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4412.669172][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4412.669174][ C2] PKRU: 55555554 [ 4412.669175][ C2] Call Trace: [ 4412.669177][ C2] [ 4412.669179][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4412.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4412.669187][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4412.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4412.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4412.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4412.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4412.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 4412.669209][ C2] xa_store (lib/xarray.c:1734) [ 4412.669213][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4412.669216][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4412.669221][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4412.669224][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4412.669227][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4412.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4412.669235][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4412.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4412.669244][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4412.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4412.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4412.669256][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4412.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4412.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4412.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4412.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4412.669278][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4412.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4412.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4412.669288][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4412.669293][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4412.669297][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4412.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4412.669305][ C2] RIP: 0033:0x7f439756d93b [ 4412.669307][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4412.669310][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4412.669313][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4412.669315][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4412.669317][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4412.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4412.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4428.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4428.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4428.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4428.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4428.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4428.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4428.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4428.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4428.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4428.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4428.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4428.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4428.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4428.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4428.669163][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4428.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4428.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4428.669170][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4428.669172][ C1] PKRU: 55555554 [ 4428.669173][ C1] Call Trace: [ 4428.669175][ C1] [ 4428.669177][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4428.669181][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4428.669184][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4428.669187][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4428.669192][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4428.669195][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4428.669198][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4428.669201][ C1] ? xa_store (lib/xarray.c:1734) [ 4428.669206][ C1] xa_store (lib/xarray.c:1734) [ 4428.669209][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4428.669213][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4428.669218][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4428.669221][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4428.669223][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.669228][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.669231][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4428.669237][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4428.669241][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4428.669245][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4428.669249][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4428.669254][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4428.669260][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4428.669264][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4428.669268][ C1] ksys_unshare (kernel/fork.c:3121) [ 4428.669272][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4428.669276][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4428.669279][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4428.669282][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4428.669286][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4428.669291][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4428.669295][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4428.669299][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4428.669302][ C1] RIP: 0033:0x7f439756d93b [ 4428.669305][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4428.669308][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4428.669311][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4428.669313][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4428.669315][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4428.669317][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4428.669319][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4428.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4428.670141][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4428.670145][ C3] softirqs last disabled at (0): 0x0 | [ 4428.670157][ C3] Tainted: [L]=SOFTLOCKUP [ 4428.670158][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4428.670161][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4428.670168][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4428.670171][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4428.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4428.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4428.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4428.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4428.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4428.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4428.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4428.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4428.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4428.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4428.670196][ C3] PKRU: 55555554 [ 4428.670197][ C3] Call Trace: [ 4428.670202][ C3] [ 4428.670204][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4428.670209][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4428.670214][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4428.670218][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4428.670223][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4428.670227][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4428.670231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4428.670235][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4428.670238][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4428.670242][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4428.670244][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4428.670247][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4428.670250][ C3] ? xas_alloc (lib/xarray.c:378) [ 4428.670255][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4428.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4428.670263][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4428.670266][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4428.670271][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4428.670276][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4428.670281][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670286][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4428.670292][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4428.670298][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670301][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4428.670304][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4428.670307][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4428.670310][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4428.670313][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4428.670319][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4428.670322][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4428.670325][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4428.670330][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4428.670334][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4428.670338][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4428.670341][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4428.670344][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670348][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4428.670352][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4428.670357][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4428.670359][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4428.670365][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4428.670368][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670372][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4428.670376][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4428.670381][ C3] handle_softirqs (kernel/softirq.c:579) [ 4428.670387][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4428.670391][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4428.670394][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4428.670398][ C3] [ 4428.670399][ C3] [ 4428.670401][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4428.670406][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4428.670409][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4428.670412][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4428.670415][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4428.670417][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4428.670420][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4428.670421][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4428.670423][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4428.670427][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4428.670433][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4428.670438][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4428.670442][ C3] ? xas_alloc (lib/xarray.c:378) [ 4428.670447][ C3] ? xas_alloc (lib/xarray.c:378) [ 4428.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4428.670454][ C3] ? xas_alloc (lib/xarray.c:378) [ 4428.670457][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4428.670462][ C3] xas_alloc (lib/xarray.c:378) [ 4428.670466][ C3] xas_create (lib/xarray.c:685) [ 4428.670473][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4428.670477][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4428.670481][ C3] __xa_store (lib/xarray.c:1703) [ 4428.670485][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4428.670490][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4428.670492][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4428.670495][ C3] ? xa_store (lib/xarray.c:1734) [ 4428.670500][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4428.670504][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4428.670507][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4428.670512][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4428.670515][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4428.670518][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670522][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4428.670525][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4428.670530][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4428.670534][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4428.670538][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4428.670542][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4428.670547][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4428.670555][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4428.670559][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4428.670564][ C3] ksys_unshare (kernel/fork.c:3121) [ 4428.670569][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4428.670572][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4428.670576][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4428.670578][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4428.670582][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4428.670588][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4428.670592][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4428.670597][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4428.670600][ C3] RIP: 0033:0x7f439756d93b [ 4428.670604][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4428.670607][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4428.670610][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4428.670612][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4428.670614][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4428.670615][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4428.670617][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4436.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4436.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4436.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4436.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4436.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4436.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4436.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4436.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4436.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4436.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4436.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4436.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4436.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4436.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4436.656162][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4436.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4436.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4436.656169][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4436.656171][ C0] PKRU: 55555554 [ 4436.656173][ C0] Call Trace: [ 4436.656174][ C0] [ 4436.656176][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4436.656180][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4436.656184][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4436.656187][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4436.656192][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4436.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4436.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4436.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 4436.656207][ C0] xa_store (lib/xarray.c:1734) [ 4436.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4436.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4436.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4436.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4436.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4436.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4436.656234][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4436.656239][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4436.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4436.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4436.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4436.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4436.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4436.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4436.656269][ C0] ksys_unshare (kernel/fork.c:3121) [ 4436.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4436.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4436.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4436.656283][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4436.656287][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4436.656292][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4436.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4436.656300][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4436.656303][ C0] RIP: 0033:0x7f439756d93b [ 4436.656305][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4436.656308][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4436.656311][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4436.656313][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4436.656315][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4436.656316][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4436.656318][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4440.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4440.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4440.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4440.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4440.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4440.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4440.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4440.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4440.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4440.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4440.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4440.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4440.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4440.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4440.669162][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4440.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4440.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4440.669169][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4440.669171][ C2] PKRU: 55555554 [ 4440.669173][ C2] Call Trace: [ 4440.669174][ C2] [ 4440.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4440.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4440.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4440.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4440.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4440.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4440.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4440.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 4440.669206][ C2] xa_store (lib/xarray.c:1734) [ 4440.669210][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4440.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4440.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4440.669221][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4440.669224][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4440.669229][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4440.669233][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4440.669238][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4440.669242][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4440.669246][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4440.669251][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4440.669255][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4440.669262][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4440.669266][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4440.669270][ C2] ksys_unshare (kernel/fork.c:3121) [ 4440.669274][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4440.669277][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4440.669281][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4440.669284][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4440.669287][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4440.669292][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4440.669296][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4440.669300][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4440.669304][ C2] RIP: 0033:0x7f439756d93b [ 4440.669306][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4440.669309][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4440.669312][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4440.669314][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4440.669316][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4440.669318][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4440.669320][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4456.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4456.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4456.669129][ C1] softirqs last disabled at (0): 0x0 | [ 4456.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4456.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4456.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4456.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4456.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4456.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4456.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4456.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4456.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4456.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4456.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4456.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4456.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4456.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4456.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4456.669173][ C1] PKRU: 55555554 [ 4456.669174][ C1] Call Trace: [ 4456.669176][ C1] [ 4456.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4456.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4456.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4456.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4456.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4456.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4456.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4456.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 4456.669208][ C1] xa_store (lib/xarray.c:1734) [ 4456.669212][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4456.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4456.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4456.669224][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4456.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.669231][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.669234][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4456.669240][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4456.669244][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4456.669248][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4456.669252][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4456.669257][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4456.669263][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4456.669266][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4456.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 4456.669275][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4456.669278][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4456.669282][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4456.669285][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4456.669288][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4456.669294][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4456.669297][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4456.669302][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4456.669305][ C1] RIP: 0033:0x7f439756d93b [ 4456.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4456.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4456.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4456.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4456.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4456.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4456.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4456.670132][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4456.670140][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4456.670143][ C3] softirqs last disabled at (0): 0x0 | [ 4456.670154][ C3] Tainted: [L]=SOFTLOCKUP [ 4456.670156][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4456.670158][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4456.670166][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4456.670169][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4456.670172][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4456.670175][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4456.670177][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4456.670179][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4456.670181][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4456.670183][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4456.670186][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4456.670190][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4456.670192][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4456.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4456.670196][ C3] PKRU: 55555554 [ 4456.670197][ C3] Call Trace: [ 4456.670200][ C3] [ 4456.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4456.670207][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4456.670213][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4456.670216][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4456.670222][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4456.670226][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4456.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4456.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4456.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4456.670240][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4456.670242][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4456.670245][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4456.670248][ C3] ? xas_alloc (lib/xarray.c:378) [ 4456.670253][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4456.670258][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4456.670261][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4456.670265][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4456.670270][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4456.670274][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4456.670279][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670283][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4456.670289][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4456.670294][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670297][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4456.670300][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4456.670304][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4456.670307][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4456.670309][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4456.670315][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4456.670318][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4456.670322][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4456.670326][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4456.670331][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4456.670334][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4456.670337][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4456.670340][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670344][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4456.670348][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4456.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4456.670356][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4456.670361][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4456.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670369][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4456.670373][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4456.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 4456.670384][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4456.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4456.670391][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4456.670395][ C3] [ 4456.670396][ C3] [ 4456.670398][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4456.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4456.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4456.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4456.670412][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4456.670414][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4456.670416][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4456.670418][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4456.670420][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4456.670424][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4456.670430][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4456.670436][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4456.670439][ C3] ? xas_alloc (lib/xarray.c:378) [ 4456.670444][ C3] ? xas_alloc (lib/xarray.c:378) [ 4456.670447][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4456.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 4456.670453][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4456.670458][ C3] xas_alloc (lib/xarray.c:378) [ 4456.670463][ C3] xas_create (lib/xarray.c:685) [ 4456.670469][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4456.670473][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4456.670477][ C3] __xa_store (lib/xarray.c:1703) [ 4456.670481][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4456.670486][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4456.670489][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4456.670491][ C3] ? xa_store (lib/xarray.c:1734) [ 4456.670496][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4456.670500][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4456.670503][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4456.670509][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4456.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4456.670515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4456.670522][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4456.670527][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4456.670531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4456.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4456.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4456.670543][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4456.670551][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4456.670555][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4456.670560][ C3] ksys_unshare (kernel/fork.c:3121) [ 4456.670564][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4456.670568][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4456.670571][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4456.670574][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4456.670577][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4456.670583][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4456.670587][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4456.670592][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4456.670596][ C3] RIP: 0033:0x7f439756d93b [ 4456.670600][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4456.670602][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4456.670605][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4456.670607][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4456.670609][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4456.670611][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4456.670613][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4464.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4464.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4464.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4464.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4464.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4464.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:104 kernel/locking/qspinlock.c:141) [ 4464.656145][ C0] Code: c6 41 83 c5 03 be 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 84 c0 0f 85 8d 07 00 00 8b 45 00 89 44 24 40 <85> c0 0f 85 6e 01 00 00 48 89 ef be 04 00 00 00 e8 60 b8 c7 fd be All code ======== 0: c6 41 83 c5 movb $0xc5,-0x7d(%rcx) 4: 03 be 04 00 00 00 add 0x4(%rsi),%edi a: 48 89 ef mov %rbp,%rdi d: e8 5d b8 c7 fd call 0xfffffffffdc7b86f 12: 41 0f b6 06 movzbl (%r14),%eax 16: 41 38 c5 cmp %al,%r13b 19: 7c 08 jl 0x23 1b: 84 c0 test %al,%al 1d: 0f 85 8d 07 00 00 jne 0x7b0 23: 8b 45 00 mov 0x0(%rbp),%eax 26: 89 44 24 40 mov %eax,0x40(%rsp) 2a:* 85 c0 test %eax,%eax <-- trapping instruction 2c: 0f 85 6e 01 00 00 jne 0x1a0 32: 48 89 ef mov %rbp,%rdi 35: be 04 00 00 00 mov $0x4,%esi 3a: e8 60 b8 c7 fd call 0xfffffffffdc7b89f 3f: be .byte 0xbe Code starting with the faulting instruction =========================================== 0: 85 c0 test %eax,%eax 2: 0f 85 6e 01 00 00 jne 0x176 8: 48 89 ef mov %rbp,%rdi b: be 04 00 00 00 mov $0x4,%esi 10: e8 60 b8 c7 fd call 0xfffffffffdc7b875 15: be .byte 0xbe [ 4464.656148][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000246 [ 4464.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4464.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4464.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4464.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4464.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4464.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4464.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4464.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4464.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4464.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4464.656172][ C0] PKRU: 55555554 [ 4464.656174][ C0] Call Trace: [ 4464.656175][ C0] [ 4464.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4464.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4464.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4464.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4464.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4464.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4464.656199][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4464.656202][ C0] ? xa_store (lib/xarray.c:1734) [ 4464.656207][ C0] xa_store (lib/xarray.c:1734) [ 4464.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4464.656215][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4464.656220][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4464.656223][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4464.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4464.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4464.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4464.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4464.656243][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4464.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4464.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4464.656256][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4464.656262][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4464.656266][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4464.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 4464.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4464.656278][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4464.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4464.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4464.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4464.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4464.656297][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4464.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4464.656304][ C0] RIP: 0033:0x7f439756d93b [ 4464.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4464.656310][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4464.656313][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4464.656315][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4464.656317][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4464.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4464.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4468.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4468.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4468.669128][ C2] softirqs last disabled at (0): 0x0 | [ 4468.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4468.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4468.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4468.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4468.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4468.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4468.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4468.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4468.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4468.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4468.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4468.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4468.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4468.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4468.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4468.669172][ C2] PKRU: 55555554 [ 4468.669173][ C2] Call Trace: [ 4468.669175][ C2] [ 4468.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4468.669181][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4468.669185][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4468.669188][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4468.669193][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4468.669196][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4468.669199][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4468.669202][ C2] ? xa_store (lib/xarray.c:1734) [ 4468.669207][ C2] xa_store (lib/xarray.c:1734) [ 4468.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4468.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4468.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4468.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4468.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4468.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4468.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4468.669239][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4468.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4468.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4468.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4468.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4468.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4468.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4468.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 4468.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4468.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4468.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4468.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4468.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4468.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4468.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4468.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4468.669305][ C2] RIP: 0033:0x7f439756d93b [ 4468.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4468.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4468.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4468.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4468.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4468.669320][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4468.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4480.706872][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4480.707141][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4480.707536][ C1] NMI backtrace for cpu 1 | [ 4480.707547][ C1] Tainted: [L]=SOFTLOCKUP [ 4480.707548][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4480.707550][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4480.707556][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4480.707559][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4480.707562][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4480.707564][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4480.707566][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4480.707568][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4480.707571][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4480.707572][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4480.707575][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4480.707578][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4480.707580][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4480.707581][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4480.707583][ C1] PKRU: 55555554 [ 4480.707584][ C1] Call Trace: [ 4480.707586][ C1] [ 4480.707588][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4480.707592][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4480.707596][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4480.707599][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4480.707604][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4480.707607][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4480.707610][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4480.707613][ C1] ? xa_store (lib/xarray.c:1734) [ 4480.707618][ C1] xa_store (lib/xarray.c:1734) [ 4480.707622][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4480.707625][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4480.707630][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4480.707633][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4480.707635][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.707640][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.707643][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4480.707648][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4480.707652][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4480.707656][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4480.707660][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4480.707664][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4480.707670][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4480.707674][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4480.707678][ C1] ksys_unshare (kernel/fork.c:3121) [ 4480.707682][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4480.707686][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4480.707690][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4480.707692][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4480.707696][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4480.707701][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4480.707705][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4480.707709][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4480.707712][ C1] RIP: 0033:0x7f439756d93b [ 4480.707715][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4480.707717][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4480.707720][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4480.707722][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4480.707724][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4480.707726][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4480.707728][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4480.707726][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4480.707728][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4480.707734][ C1] | [ 4480.708545][ C3] Tainted: [L]=SOFTLOCKUP [ 4480.708547][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4480.708549][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4480.708554][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4480.708557][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4480.708560][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4480.708562][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4480.708564][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4480.708566][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4480.708568][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4480.708570][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4480.708573][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4480.708577][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4480.708579][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4480.708580][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4480.708582][ C3] PKRU: 55555554 [ 4480.708584][ C3] Call Trace: [ 4480.708585][ C3] [ 4480.708587][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4480.708592][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4480.708596][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4480.708600][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4480.708603][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4480.708607][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4480.708611][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4480.708614][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4480.708617][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4480.708620][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4480.708623][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4480.708626][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4480.708628][ C3] ? xas_alloc (lib/xarray.c:378) [ 4480.708634][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4480.708637][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4480.708640][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4480.708643][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4480.708648][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4480.708652][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4480.708657][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708660][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4480.708666][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4480.708671][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708673][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4480.708676][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4480.708679][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4480.708683][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4480.708685][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4480.708691][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4480.708694][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4480.708697][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4480.708701][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4480.708705][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4480.708709][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4480.708712][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4480.708715][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708719][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4480.708723][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4480.708727][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4480.708730][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4480.708735][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4480.708739][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708742][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4480.708747][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4480.708751][ C3] handle_softirqs (kernel/softirq.c:579) [ 4480.708757][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4480.708760][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4480.708763][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4480.708766][ C3] [ 4480.708767][ C3] [ 4480.708769][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4480.708772][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4480.708775][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4480.708778][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4480.708780][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4480.708782][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4480.708784][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4480.708785][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4480.708787][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4480.708791][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4480.708796][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4480.708801][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4480.708804][ C3] ? xas_alloc (lib/xarray.c:378) [ 4480.708809][ C3] ? xas_alloc (lib/xarray.c:378) [ 4480.708811][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4480.708815][ C3] ? xas_alloc (lib/xarray.c:378) [ 4480.708818][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4480.708822][ C3] xas_alloc (lib/xarray.c:378) [ 4480.708827][ C3] xas_create (lib/xarray.c:685) [ 4480.708832][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4480.708836][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4480.708840][ C3] __xa_store (lib/xarray.c:1703) [ 4480.708843][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4480.708848][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4480.708851][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4480.708854][ C3] ? xa_store (lib/xarray.c:1734) [ 4480.708858][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4480.708862][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4480.708865][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4480.708869][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4480.708872][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4480.708875][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708878][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4480.708882][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4480.708886][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4480.708890][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4480.708894][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4480.708898][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4480.708902][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4480.708908][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4480.708912][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4480.708917][ C3] ksys_unshare (kernel/fork.c:3121) [ 4480.708922][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4480.708925][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4480.708928][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4480.708931][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4480.708934][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4480.708940][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4480.708943][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4480.708948][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4480.708950][ C3] RIP: 0033:0x7f439756d93b [ 4480.708955][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4480.708957][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4480.708960][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4480.708962][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4480.708963][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4480.708965][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4480.708966][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4492.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4492.656125][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4492.656129][ C0] softirqs last disabled at (0): 0x0 | [ 4492.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 4492.656139][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4492.656141][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4492.656145][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4492.656149][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4492.656151][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4492.656153][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4492.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4492.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4492.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4492.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4492.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4492.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4492.656170][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4492.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4492.656173][ C0] PKRU: 55555554 [ 4492.656175][ C0] Call Trace: [ 4492.656176][ C0] [ 4492.656179][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4492.656183][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4492.656187][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4492.656190][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4492.656195][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4492.656198][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4492.656201][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4492.656204][ C0] ? xa_store (lib/xarray.c:1734) [ 4492.656209][ C0] xa_store (lib/xarray.c:1734) [ 4492.656213][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4492.656216][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4492.656221][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4492.656224][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4492.656226][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4492.656231][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4492.656235][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4492.656240][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4492.656244][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4492.656249][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4492.656253][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4492.656257][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4492.656264][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4492.656267][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4492.656271][ C0] ksys_unshare (kernel/fork.c:3121) [ 4492.656276][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4492.656279][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4492.656283][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4492.656286][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4492.656290][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4492.656295][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4492.656298][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4492.656303][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4492.656306][ C0] RIP: 0033:0x7f439756d93b [ 4492.656308][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4492.656311][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4492.656314][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4492.656316][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4492.656318][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4492.656320][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4492.656322][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4496.669119][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4496.669124][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4496.669127][ C2] softirqs last disabled at (0): 0x0 | [ 4496.669136][ C2] Tainted: [L]=SOFTLOCKUP [ 4496.669137][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4496.669139][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4496.669144][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4496.669147][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4496.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4496.669152][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4496.669154][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4496.669156][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4496.669158][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4496.669160][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4496.669163][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4496.669166][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4496.669168][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4496.669170][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4496.669171][ C2] PKRU: 55555554 [ 4496.669173][ C2] Call Trace: [ 4496.669174][ C2] [ 4496.669177][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4496.669180][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4496.669184][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4496.669187][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4496.669192][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4496.669195][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4496.669198][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4496.669201][ C2] ? xa_store (lib/xarray.c:1734) [ 4496.669206][ C2] xa_store (lib/xarray.c:1734) [ 4496.669209][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4496.669213][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4496.669218][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4496.669220][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4496.669223][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4496.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4496.669231][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4496.669237][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4496.669241][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4496.669245][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4496.669249][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4496.669253][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4496.669259][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4496.669263][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4496.669267][ C2] ksys_unshare (kernel/fork.c:3121) [ 4496.669271][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4496.669275][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4496.669278][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4496.669281][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4496.669285][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4496.669290][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4496.669294][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4496.669298][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4496.669301][ C2] RIP: 0033:0x7f439756d93b [ 4496.669304][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4496.669306][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4496.669309][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4496.669311][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4496.669313][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4496.669315][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4496.669317][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4508.669119][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4508.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4508.669128][ C1] softirqs last disabled at (0): 0x0 | [ 4508.669137][ C1] Tainted: [L]=SOFTLOCKUP [ 4508.669138][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4508.669140][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4508.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4508.669149][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4508.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4508.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4508.669156][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4508.669158][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4508.669160][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4508.669162][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4508.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4508.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4508.669169][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4508.669171][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4508.669173][ C1] PKRU: 55555554 [ 4508.669174][ C1] Call Trace: [ 4508.669176][ C1] [ 4508.669178][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4508.669182][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4508.669185][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4508.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4508.669194][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4508.669197][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4508.669199][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4508.669202][ C1] ? xa_store (lib/xarray.c:1734) [ 4508.669208][ C1] xa_store (lib/xarray.c:1734) [ 4508.669212][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4508.669215][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4508.669219][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4508.669222][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4508.669225][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.669230][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.669233][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4508.669238][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4508.669242][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4508.669247][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4508.669251][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4508.669255][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4508.669261][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4508.669265][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4508.669269][ C1] ksys_unshare (kernel/fork.c:3121) [ 4508.669274][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4508.669277][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4508.669281][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4508.669284][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4508.669287][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4508.669292][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4508.669296][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4508.669300][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4508.669303][ C1] RIP: 0033:0x7f439756d93b [ 4508.669307][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4508.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4508.669312][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4508.669314][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4508.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4508.669318][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4508.669320][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4508.670134][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4508.670143][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4508.670146][ C3] softirqs last disabled at (0): 0x0 | [ 4508.670158][ C3] Tainted: [L]=SOFTLOCKUP [ 4508.670159][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4508.670162][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4508.670170][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4508.670173][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4508.670176][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4508.670179][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4508.670180][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4508.670182][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4508.670184][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4508.670186][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4508.670188][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4508.670192][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4508.670194][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4508.670196][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4508.670197][ C3] PKRU: 55555554 [ 4508.670199][ C3] Call Trace: [ 4508.670202][ C3] [ 4508.670204][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4508.670210][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4508.670215][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4508.670218][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4508.670222][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4508.670227][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4508.670230][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4508.670235][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4508.670238][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4508.670241][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4508.670244][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4508.670246][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4508.670249][ C3] ? xas_alloc (lib/xarray.c:378) [ 4508.670254][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4508.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4508.670262][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4508.670266][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4508.670271][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4508.670275][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4508.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670285][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4508.670291][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4508.670297][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670300][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4508.670303][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4508.670306][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4508.670310][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4508.670313][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4508.670318][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4508.670321][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4508.670324][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4508.670329][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4508.670334][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4508.670337][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4508.670340][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4508.670343][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670347][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4508.670351][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4508.670356][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4508.670359][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4508.670364][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4508.670368][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670371][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4508.670376][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4508.670381][ C3] handle_softirqs (kernel/softirq.c:579) [ 4508.670387][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4508.670391][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4508.670394][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4508.670398][ C3] [ 4508.670399][ C3] [ 4508.670400][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4508.670406][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4508.670409][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4508.670412][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4508.670415][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4508.670417][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4508.670419][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4508.670421][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4508.670423][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4508.670427][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4508.670432][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4508.670438][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4508.670441][ C3] ? xas_alloc (lib/xarray.c:378) [ 4508.670446][ C3] ? xas_alloc (lib/xarray.c:378) [ 4508.670449][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4508.670453][ C3] ? xas_alloc (lib/xarray.c:378) [ 4508.670456][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4508.670461][ C3] xas_alloc (lib/xarray.c:378) [ 4508.670466][ C3] xas_create (lib/xarray.c:685) [ 4508.670472][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4508.670476][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4508.670480][ C3] __xa_store (lib/xarray.c:1703) [ 4508.670484][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4508.670489][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4508.670492][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4508.670494][ C3] ? xa_store (lib/xarray.c:1734) [ 4508.670499][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4508.670503][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4508.670507][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4508.670512][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4508.670515][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4508.670517][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670521][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4508.670524][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4508.670529][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4508.670533][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4508.670537][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4508.670541][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4508.670545][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4508.670553][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4508.670557][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4508.670562][ C3] ksys_unshare (kernel/fork.c:3121) [ 4508.670567][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4508.670570][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4508.670573][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4508.670576][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4508.670579][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4508.670585][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4508.670589][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4508.670594][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4508.670597][ C3] RIP: 0033:0x7f439756d93b [ 4508.670601][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4508.670604][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4508.670607][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4508.670609][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4508.670611][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4508.670613][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4508.670615][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4520.656120][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4520.656126][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4520.656129][ C0] softirqs last disabled at (0): 0x0 | [ 4520.656138][ C0] Tainted: [L]=SOFTLOCKUP [ 4520.656140][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4520.656141][ C0] RIP: 0010:kasan_check_range (mm/kasan/generic.c:174 mm/kasan/generic.c:189) [ 4520.656145][ C0] Code: 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 66 0f 1f 00 48 85 f6 0f 84 5e 01 00 00 48 89 f8 41 54 44 0f b6 c2 48 01 f0 55 53 <72> 14 eb 26 cc cc cc 48 b8 ff ff ff ff ff ff ff fe 48 39 c7 77 23 All code ======== 0: 90 nop 1: 90 nop 2: 90 nop 3: 90 nop 4: 90 nop 5: 90 nop 6: 90 nop 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 66 0f 1f 00 nopw (%rax) 13: 48 85 f6 test %rsi,%rsi 16: 0f 84 5e 01 00 00 je 0x17a 1c: 48 89 f8 mov %rdi,%rax 1f: 41 54 push %r12 21: 44 0f b6 c2 movzbl %dl,%r8d 25: 48 01 f0 add %rsi,%rax 28: 55 push %rbp 29: 53 push %rbx 2a:* 72 14 jb 0x40 <-- trapping instruction 2c: eb 26 jmp 0x54 2e: cc int3 2f: cc int3 30: cc int3 31: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax 38: ff ff fe 3b: 48 39 c7 cmp %rax,%rdi 3e: 77 23 ja 0x63 Code starting with the faulting instruction =========================================== 0: 72 14 jb 0x16 2: eb 26 jmp 0x2a 4: cc int3 5: cc int3 6: cc int3 7: 48 b8 ff ff ff ff ff movabs $0xfeffffffffffffff,%rax e: ff ff fe 11: 48 39 c7 cmp %rax,%rdi 14: 77 23 ja 0x39 [ 4520.656148][ C0] RSP: 0018:ffffc900034c79f8 EFLAGS: 00000282 [ 4520.656151][ C0] RAX: ffffffffbbee5c04 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4520.656153][ C0] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4520.656155][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4520.656157][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4520.656159][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4520.656161][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4520.656164][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4520.656167][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4520.656169][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4520.656171][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4520.656173][ C0] PKRU: 55555554 [ 4520.656174][ C0] Call Trace: [ 4520.656175][ C0] [ 4520.656178][ C0] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4520.656183][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4520.656186][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4520.656190][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4520.656193][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4520.656198][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4520.656201][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4520.656204][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4520.656207][ C0] ? xa_store (lib/xarray.c:1734) [ 4520.656212][ C0] xa_store (lib/xarray.c:1734) [ 4520.656216][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4520.656220][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4520.656225][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4520.656227][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4520.656230][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4520.656235][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4520.656238][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4520.656243][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4520.656247][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4520.656252][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4520.656256][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4520.656261][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4520.656267][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4520.656270][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4520.656275][ C0] ksys_unshare (kernel/fork.c:3121) [ 4520.656279][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4520.656282][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4520.656286][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4520.656289][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4520.656292][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4520.656297][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4520.656302][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4520.656306][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4520.656309][ C0] RIP: 0033:0x7f439756d93b [ 4520.656312][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4520.656315][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4520.656317][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4520.656319][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4520.656321][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4520.656323][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4520.656325][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4524.669120][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4524.669125][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4524.669129][ C2] softirqs last disabled at (0): 0x0 | [ 4524.669137][ C2] Tainted: [L]=SOFTLOCKUP [ 4524.669138][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4524.669140][ C2] RIP: 0010:queued_spin_lock_slowpath (./include/linux/instrumented.h:68 ./include/linux/atomic/atomic-instrumented.h:32 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4524.669145][ C2] Code: 00 49 89 fe 49 89 fd 4c 8d 7c 24 40 bb 01 00 00 00 49 c1 ee 03 41 83 e5 07 48 b8 00 00 00 00 00 fc ff df 49 01 c6 41 83 c5 03 04 00 00 00 48 89 ef e8 5d b8 c7 fd 41 0f b6 06 41 38 c5 7c 08 All code ======== 0: 00 49 89 add %cl,-0x77(%rcx) 3: fe 49 89 decb -0x77(%rcx) 6: fd std 7: 4c 8d 7c 24 40 lea 0x40(%rsp),%r15 c: bb 01 00 00 00 mov $0x1,%ebx 11: 49 c1 ee 03 shr $0x3,%r14 15: 41 83 e5 07 and $0x7,%r13d 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 49 01 c6 add %rax,%r14 26: 41 83 c5 03 add $0x3,%r13d 2a:* be 04 00 00 00 mov $0x4,%esi <-- trapping instruction 2f: 48 89 ef mov %rbp,%rdi 32: e8 5d b8 c7 fd call 0xfffffffffdc7b894 37: 41 0f b6 06 movzbl (%r14),%eax 3b: 41 38 c5 cmp %al,%r13b 3e: 7c 08 jl 0x48 Code starting with the faulting instruction =========================================== 0: be 04 00 00 00 mov $0x4,%esi 5: 48 89 ef mov %rbp,%rdi 8: e8 5d b8 c7 fd call 0xfffffffffdc7b86a d: 41 0f b6 06 movzbl (%r14),%eax 11: 41 38 c5 cmp %al,%r13b 14: 7c 08 jl 0x1e [ 4524.669148][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4524.669150][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4524.669153][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4524.669155][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4524.669157][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4524.669159][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4524.669161][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4524.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4524.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4524.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4524.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4524.669173][ C2] PKRU: 55555554 [ 4524.669174][ C2] Call Trace: [ 4524.669176][ C2] [ 4524.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4524.669182][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4524.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4524.669189][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4524.669194][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4524.669197][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4524.669200][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4524.669203][ C2] ? xa_store (lib/xarray.c:1734) [ 4524.669208][ C2] xa_store (lib/xarray.c:1734) [ 4524.669212][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4524.669215][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4524.669220][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4524.669223][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4524.669226][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4524.669231][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4524.669234][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4524.669240][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4524.669243][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4524.669248][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4524.669252][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4524.669257][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4524.669263][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4524.669267][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4524.669271][ C2] ksys_unshare (kernel/fork.c:3121) [ 4524.669275][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4524.669279][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4524.669282][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4524.669285][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4524.669289][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4524.669294][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4524.669298][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4524.669302][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4524.669305][ C2] RIP: 0033:0x7f439756d93b [ 4524.669308][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4524.669311][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4524.669314][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4524.669316][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4524.669318][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4524.669319][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4524.669321][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4536.669120][ C1] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4536.669125][ C1] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4536.669129][ C1] softirqs last disabled at (0): 0x0 | [ 4536.669138][ C1] Tainted: [L]=SOFTLOCKUP [ 4536.669139][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4536.669141][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4536.669145][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4536.669148][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4536.669151][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4536.669153][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4536.669155][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4536.669157][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4536.669159][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4536.669161][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4536.669164][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4536.669167][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4536.669170][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4536.669172][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4536.669174][ C1] PKRU: 55555554 [ 4536.669175][ C1] Call Trace: [ 4536.669177][ C1] [ 4536.669179][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4536.669183][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4536.669186][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4536.669189][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4536.669195][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4536.669198][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4536.669200][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4536.669203][ C1] ? xa_store (lib/xarray.c:1734) [ 4536.669209][ C1] xa_store (lib/xarray.c:1734) [ 4536.669213][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4536.669216][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4536.669221][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4536.669225][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4536.669227][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.669232][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.669235][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4536.669241][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4536.669245][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4536.669249][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4536.669253][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4536.669258][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4536.669264][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4536.669267][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4536.669271][ C1] ksys_unshare (kernel/fork.c:3121) [ 4536.669275][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4536.669279][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4536.669283][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4536.669285][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4536.669289][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4536.669294][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4536.669298][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4536.669302][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4536.669305][ C1] RIP: 0033:0x7f439756d93b [ 4536.669308][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4536.669310][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4536.669313][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4536.669315][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4536.669317][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4536.669319][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4536.669321][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4536.670133][ C3] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4536.670140][ C3] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4536.670144][ C3] softirqs last disabled at (0): 0x0 | [ 4536.670155][ C3] Tainted: [L]=SOFTLOCKUP [ 4536.670157][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4536.670160][ C3] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4536.670167][ C3] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4536.670170][ C3] RSP: 0018:ffffc90000270a48 EFLAGS: 00000202 [ 4536.670174][ C3] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4536.670176][ C3] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4536.670178][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4536.670180][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4536.670182][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4536.670184][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4536.670187][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4536.670191][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4536.670193][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4536.670194][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4536.670196][ C3] PKRU: 55555554 [ 4536.670197][ C3] Call Trace: [ 4536.670201][ C3] [ 4536.670202][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4536.670208][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4536.670213][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4536.670216][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4536.670221][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4536.670225][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4536.670229][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4536.670233][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4536.670236][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4536.670240][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4536.670243][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4536.670245][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4536.670248][ C3] ? xas_alloc (lib/xarray.c:378) [ 4536.670254][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4536.670259][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4536.670262][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4536.670265][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4536.670271][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4536.670275][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4536.670280][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670285][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4536.670291][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4536.670296][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670299][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4536.670302][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4536.670305][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4536.670309][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4536.670311][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4536.670317][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4536.670320][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4536.670323][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4536.670327][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4536.670332][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4536.670335][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4536.670338][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4536.670341][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670344][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4536.670348][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4536.670353][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4536.670356][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4536.670361][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4536.670365][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670369][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4536.670374][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4536.670378][ C3] handle_softirqs (kernel/softirq.c:579) [ 4536.670384][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4536.670387][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4536.670391][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4536.670395][ C3] [ 4536.670396][ C3] [ 4536.670397][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4536.670403][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4536.670406][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4536.670409][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4536.670412][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4536.670414][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4536.670416][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4536.670418][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4536.670420][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4536.670424][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4536.670430][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4536.670435][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4536.670439][ C3] ? xas_alloc (lib/xarray.c:378) [ 4536.670444][ C3] ? xas_alloc (lib/xarray.c:378) [ 4536.670447][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4536.670451][ C3] ? xas_alloc (lib/xarray.c:378) [ 4536.670454][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4536.670459][ C3] xas_alloc (lib/xarray.c:378) [ 4536.670463][ C3] xas_create (lib/xarray.c:685) [ 4536.670469][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4536.670474][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4536.670478][ C3] __xa_store (lib/xarray.c:1703) [ 4536.670482][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4536.670486][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4536.670489][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4536.670492][ C3] ? xa_store (lib/xarray.c:1734) [ 4536.670497][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4536.670501][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4536.670504][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4536.670509][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4536.670512][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4536.670515][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670519][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4536.670522][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4536.670527][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4536.670531][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4536.670535][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4536.670539][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4536.670543][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4536.670551][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4536.670555][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4536.670561][ C3] ksys_unshare (kernel/fork.c:3121) [ 4536.670565][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4536.670568][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4536.670572][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4536.670575][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4536.670578][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4536.670585][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4536.670588][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4536.670593][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4536.670596][ C3] RIP: 0033:0x7f439756d93b [ 4536.670600][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4536.670603][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4536.670606][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4536.670608][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4536.670610][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4536.670612][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4536.670614][ C3] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4548.656119][ C0] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4548.656124][ C0] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4548.656128][ C0] softirqs last disabled at (0): 0x0 | [ 4548.656137][ C0] Tainted: [L]=SOFTLOCKUP [ 4548.656138][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4548.656140][ C0] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4548.656144][ C0] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4548.656147][ C0] RSP: 0018:ffffc900034c7a18 EFLAGS: 00000202 [ 4548.656150][ C0] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4548.656152][ C0] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4548.656154][ C0] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4548.656156][ C0] R10: ffffffffbbee5c03 R11: ffffc900034c78e0 R12: 1ffff92000698f45 [ 4548.656158][ C0] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034c7a58 [ 4548.656160][ C0] FS: 00007f439752b740(0000) GS:ffff8880b1f83000(0000) knlGS:0000000000000000 [ 4548.656163][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4548.656166][ C0] CR2: 00007f439756d930 CR3: 0000000023fbb006 CR4: 0000000000772ef0 [ 4548.656168][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4548.656170][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4548.656172][ C0] PKRU: 55555554 [ 4548.656173][ C0] Call Trace: [ 4548.656175][ C0] [ 4548.656177][ C0] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4548.656181][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4548.656185][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4548.656188][ C0] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4548.656193][ C0] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4548.656196][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4548.656198][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4548.656201][ C0] ? xa_store (lib/xarray.c:1734) [ 4548.656207][ C0] xa_store (lib/xarray.c:1734) [ 4548.656211][ C0] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4548.656214][ C0] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4548.656219][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4548.656222][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4548.656225][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4548.656229][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4548.656233][ C0] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4548.656238][ C0] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4548.656242][ C0] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4548.656247][ C0] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4548.656251][ C0] copy_net_ns (net/core/net_namespace.c:567) [ 4548.656255][ C0] create_new_namespaces (kernel/nsproxy.c:110) [ 4548.656261][ C0] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4548.656265][ C0] ? handle_mm_fault (mm/memory.c:6413) [ 4548.656270][ C0] ksys_unshare (kernel/fork.c:3121) [ 4548.656274][ C0] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4548.656277][ C0] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4548.656281][ C0] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4548.656284][ C0] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4548.656288][ C0] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4548.656293][ C0] __x64_sys_unshare (kernel/fork.c:3190) [ 4548.656296][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4548.656301][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4548.656304][ C0] RIP: 0033:0x7f439756d93b [ 4548.656307][ C0] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4548.656309][ C0] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4548.656312][ C0] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4548.656314][ C0] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4548.656316][ C0] RBP: 00007f4397528000 R08: 0000000000000000 R09: 0000000000000000 [ 4548.656318][ C0] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4548.656320][ C0] R13: 00007ffcb7327b50 R14: 00007f4397528000 R15: 00000000004082a0 | [ 4552.669121][ C2] hardirqs last disabled at (0): copy_process (kernel/fork.c:2113) | [ 4552.669126][ C2] softirqs last enabled at (0): copy_process (kernel/fork.c:2115) | [ 4552.669129][ C2] softirqs last disabled at (0): 0x0 | [ 4552.669138][ C2] Tainted: [L]=SOFTLOCKUP [ 4552.669140][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4552.669141][ C2] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4552.669146][ C2] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4552.669149][ C2] RSP: 0018:ffffc900034d7a18 EFLAGS: 00000202 [ 4552.669152][ C2] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4552.669154][ C2] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4552.669156][ C2] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4552.669158][ C2] R10: ffffffffbbee5c03 R11: ffffc900034d78e0 R12: 1ffff9200069af45 [ 4552.669160][ C2] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034d7a58 [ 4552.669162][ C2] FS: 00007f439752b740(0000) GS:ffff8880b2083000(0000) knlGS:0000000000000000 [ 4552.669164][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4552.669167][ C2] CR2: 00007f439756d930 CR3: 0000000023c0b004 CR4: 0000000000772ef0 [ 4552.669169][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4552.669171][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4552.669173][ C2] PKRU: 55555554 [ 4552.669174][ C2] Call Trace: [ 4552.669176][ C2] [ 4552.669178][ C2] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4552.669183][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4552.669186][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4552.669190][ C2] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4552.669195][ C2] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4552.669198][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4552.669201][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4552.669205][ C2] ? xa_store (lib/xarray.c:1734) [ 4552.669210][ C2] xa_store (lib/xarray.c:1734) [ 4552.669214][ C2] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4552.669217][ C2] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4552.669222][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4552.669225][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4552.669228][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4552.669233][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4552.669237][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4552.669242][ C2] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4552.669246][ C2] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4552.669250][ C2] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4552.669254][ C2] copy_net_ns (net/core/net_namespace.c:567) [ 4552.669259][ C2] create_new_namespaces (kernel/nsproxy.c:110) [ 4552.669265][ C2] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4552.669268][ C2] ? handle_mm_fault (mm/memory.c:6413) [ 4552.669273][ C2] ksys_unshare (kernel/fork.c:3121) [ 4552.669277][ C2] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4552.669281][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4552.669285][ C2] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4552.669288][ C2] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4552.669291][ C2] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4552.669296][ C2] __x64_sys_unshare (kernel/fork.c:3190) [ 4552.669300][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4552.669304][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4552.669307][ C2] RIP: 0033:0x7f439756d93b [ 4552.669310][ C2] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4552.669313][ C2] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4552.669315][ C2] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4552.669318][ C2] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4552.669319][ C2] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4552.669321][ C2] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4552.669323][ C2] R13: 00007ffcb7327b50 R14: 00007f439752a000 R15: 00000000004082a0 | [ 4558.720499][ C3] rcu: Stack dump where RCU GP kthread last ran: | [ 4558.720781][ C3] Sending NMI from CPU 3 to CPUs 1: | [ 4558.721017][ C1] NMI backtrace for cpu 1 | [ 4558.721032][ C1] Tainted: [L]=SOFTLOCKUP [ 4558.721033][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4558.721036][ C1] RIP: 0010:queued_spin_lock_slowpath (./arch/x86/include/asm/qspinlock.h:106 kernel/locking/qspinlock.c:141) [ 4558.721043][ C1] Code: 02 48 89 e8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 1c 07 00 00 b8 01 00 00 00 66 89 45 00 e9 c2 fe ff ff 89 44 24 40 f3 90 5e fe ff ff 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 All code ======== 0: 02 48 89 add -0x77(%rax),%cl 3: e8 83 e0 07 83 call 0xffffffff8307e08b 8: c0 01 38 rolb $0x38,(%rcx) b: d0 7c 08 84 sarb $1,-0x7c(%rax,%rcx,1) f: d2 0f rorb %cl,(%rdi) 11: 85 1c 07 test %ebx,(%rdi,%rax,1) 14: 00 00 add %al,(%rax) 16: b8 01 00 00 00 mov $0x1,%eax 1b: 66 89 45 00 mov %ax,0x0(%rbp) 1f: e9 c2 fe ff ff jmp 0xfffffffffffffee6 24: 89 44 24 40 mov %eax,0x40(%rsp) 28: f3 90 pause 2a:* e9 5e fe ff ff jmp 0xfffffffffffffe8d <-- trapping instruction 2f: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 36: fc ff df 39: 48 89 fa mov %rdi,%rdx 3c: 48 c1 ea 03 shr $0x3,%rdx Code starting with the faulting instruction =========================================== 0: e9 5e fe ff ff jmp 0xfffffffffffffe63 5: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax c: fc ff df f: 48 89 fa mov %rdi,%rdx 12: 48 c1 ea 03 shr $0x3,%rdx [ 4558.721046][ C1] RSP: 0018:ffffc900034b7a18 EFLAGS: 00000202 [ 4558.721050][ C1] RAX: 0000000000000001 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4558.721052][ C1] RDX: fffffbfff77dcb81 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4558.721054][ C1] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4558.721056][ C1] R10: ffffffffbbee5c03 R11: ffffc900034b78e0 R12: 1ffff92000696f45 [ 4558.721058][ C1] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc900034b7a58 [ 4558.721060][ C1] FS: 00007f439752b740(0000) GS:ffff8880b2003000(0000) knlGS:0000000000000000 [ 4558.721063][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4558.721067][ C1] CR2: 00007f439756d930 CR3: 000000000aef9003 CR4: 0000000000772ef0 [ 4558.721069][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4558.721071][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4558.721073][ C1] PKRU: 55555554 [ 4558.721074][ C1] Call Trace: [ 4558.721077][ C1] [ 4558.721080][ C1] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4558.721083][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4558.721088][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4558.721091][ C1] ? __d_instantiate (fs/dcache.c:1915 (discriminator 3)) [ 4558.721097][ C1] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4558.721099][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4558.721102][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4558.721105][ C1] ? xa_store (lib/xarray.c:1734) [ 4558.721111][ C1] xa_store (lib/xarray.c:1734) [ 4558.721115][ C1] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4558.721119][ C1] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4558.721124][ C1] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4558.721127][ C1] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4558.721129][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.721134][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.721137][ C1] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4558.721144][ C1] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4558.721147][ C1] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4558.721152][ C1] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4558.721157][ C1] copy_net_ns (net/core/net_namespace.c:567) [ 4558.721161][ C1] create_new_namespaces (kernel/nsproxy.c:110) [ 4558.721168][ C1] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4558.721171][ C1] ? handle_mm_fault (mm/memory.c:6413) [ 4558.721177][ C1] ksys_unshare (kernel/fork.c:3121) [ 4558.721182][ C1] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4558.721185][ C1] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4558.721190][ C1] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4558.721193][ C1] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4558.721197][ C1] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4558.721202][ C1] __x64_sys_unshare (kernel/fork.c:3190) [ 4558.721206][ C1] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4558.721211][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4558.721214][ C1] RIP: 0033:0x7f439756d93b [ 4558.721218][ C1] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4558.721221][ C1] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4558.721224][ C1] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4558.721226][ C1] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4558.721228][ C1] RBP: 00007f4397529000 R08: 0000000000000000 R09: 0000000000000000 [ 4558.721230][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 [ 4558.721232][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4558.721230][ C1] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 | [ 4558.721232][ C1] R13: 00007ffcb7327b50 R14: 00007f4397529000 R15: 00000000004082a0 | [ 4558.721238][ C1] | [ 4558.722026][ C3] Tainted: [L]=SOFTLOCKUP [ 4558.722027][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 4558.722029][ C3] RIP: 0010:kasan_check_range (./include/linux/kasan.h:64 mm/kasan/generic.c:130 mm/kasan/generic.c:161 mm/kasan/generic.c:180 mm/kasan/generic.c:189) [ 4558.722034][ C3] Code: 5b 5d 41 5c c3 cc cc cc cc 48 b8 ff ff ff ff ff 7f ff ff 48 39 c7 76 dd 4c 8d 54 37 ff 48 89 fd 48 b8 00 00 00 00 00 fc ff df <4d> 89 d1 48 c1 ed 03 49 c1 e9 03 48 01 c5 49 01 c1 48 89 e8 49 8d All code ======== 0: 5b pop %rbx 1: 5d pop %rbp 2: 41 5c pop %r12 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 48 b8 ff ff ff ff ff movabs $0xffff7fffffffffff,%rax 10: 7f ff ff 13: 48 39 c7 cmp %rax,%rdi 16: 76 dd jbe 0xfffffffffffffff5 18: 4c 8d 54 37 ff lea -0x1(%rdi,%rsi,1),%r10 1d: 48 89 fd mov %rdi,%rbp 20: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 27: fc ff df 2a:* 4d 89 d1 mov %r10,%r9 <-- trapping instruction 2d: 48 c1 ed 03 shr $0x3,%rbp 31: 49 c1 e9 03 shr $0x3,%r9 35: 48 01 c5 add %rax,%rbp 38: 49 01 c1 add %rax,%r9 3b: 48 89 e8 mov %rbp,%rax 3e: 49 rex.WB 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 4d 89 d1 mov %r10,%r9 3: 48 c1 ed 03 shr $0x3,%rbp 7: 49 c1 e9 03 shr $0x3,%r9 b: 48 01 c5 add %rax,%rbp e: 49 01 c1 add %rax,%r9 11: 48 89 e8 mov %rbp,%rax 14: 49 rex.WB 15: 8d .byte 0x8d [ 4558.722038][ C3] RSP: 0018:ffffc90000270a28 EFLAGS: 00000212 [ 4558.722041][ C3] RAX: dffffc0000000000 RBX: 0000000000000001 RCX: ffffffffb7cc5ea3 [ 4558.722044][ C3] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffffbbee5c00 [ 4558.722045][ C3] RBP: ffffffffbbee5c00 R08: 0000000000000000 R09: fffffbfff77dcb80 [ 4558.722048][ C3] R10: ffffffffbbee5c03 R11: ffffc90000270938 R12: 1ffff9200004e14b [ 4558.722050][ C3] R13: 0000000000000003 R14: fffffbfff77dcb80 R15: ffffc90000270a88 [ 4558.722052][ C3] FS: 00007f439752b740(0000) GS:ffff8880b2103000(0000) knlGS:0000000000000000 [ 4558.722054][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 4558.722059][ C3] CR2: 00007f439756d930 CR3: 0000000020bad002 CR4: 0000000000772ef0 [ 4558.722061][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 4558.722062][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 4558.722064][ C3] PKRU: 55555554 [ 4558.722066][ C3] Call Trace: [ 4558.722068][ C3] [ 4558.722070][ C3] queued_spin_lock_slowpath (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./arch/x86/include/asm/qspinlock.h:102 kernel/locking/qspinlock.c:141) [ 4558.722074][ C3] ? __kasan_slab_free (mm/kasan/common.c:271) [ 4558.722078][ C3] ? kfree (mm/slub.c:4643 mm/slub.c:4842) [ 4558.722082][ C3] ? __pfx_queued_spin_lock_slowpath (kernel/locking/qspinlock.c:131) [ 4558.722085][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4558.722089][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4558.722094][ C3] ? __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4558.722097][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4558.722101][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4558.722104][ C3] ? get_partial_node.part.0 (mm/slub.c:2903) [ 4558.722107][ C3] ? ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4558.722110][ C3] ? __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4558.722113][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4558.722116][ C3] ? xas_alloc (lib/xarray.c:378) [ 4558.722121][ C3] do_raw_spin_lock (./include/asm-generic/qspinlock.h:114 kernel/locking/spinlock_debug.c:116) [ 4558.722124][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4558.722127][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4558.722130][ C3] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4558.722136][ C3] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 4558.722140][ C3] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 4558.722145][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722148][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4558.722154][ C3] ref_tracker_dir_exit (./include/linux/workqueue.h:723 lib/ref_tracker.c:55 lib/ref_tracker.c:223) [ 4558.722159][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722162][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4558.722165][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 4558.722169][ C3] ? ref_tracker_free (lib/ref_tracker.c:281) [ 4558.722172][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 4558.722175][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4558.722181][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4558.722184][ C3] ? rcu_core (kernel/rcu/tree.c:2834) [ 4558.722187][ C3] ? handle_softirqs (kernel/softirq.c:579) [ 4558.722192][ C3] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 4558.722195][ C3] ? kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4558.722199][ C3] ? __pfx___put_net (net/core/net_namespace.c:729) [ 4558.722202][ C3] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 4558.722205][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722208][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4558.722213][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 4558.722217][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 4558.722220][ C3] rcu_do_batch (kernel/rcu/tree.c:2576) [ 4558.722225][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 4558.722229][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722232][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4558.722237][ C3] rcu_core (kernel/rcu/tree.c:2834) [ 4558.722241][ C3] handle_softirqs (kernel/softirq.c:579) [ 4558.722246][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 4558.722249][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 4558.722253][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 4558.722256][ C3] [ 4558.722257][ C3] [ 4558.722259][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 4558.722263][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 4558.722266][ C3] Code: 74 24 10 e8 41 16 53 fd 48 89 ef e8 f9 68 53 fd 81 e3 00 02 00 00 75 29 9c 58 f6 c4 02 75 35 48 85 db 74 01 fb bf 01 00 00 00 ba 26 47 fd 65 8b 05 33 7b 1d 03 85 c0 74 0e 5b 5d e9 98 34 00 All code ======== 0: 74 24 je 0x26 2: 10 e8 adc %ch,%al 4: 41 16 rex.B (bad) 6: 53 push %rbx 7: fd std 8: 48 89 ef mov %rbp,%rdi b: e8 f9 68 53 fd call 0xfffffffffd536909 10: 81 e3 00 02 00 00 and $0x200,%ebx 16: 75 29 jne 0x41 18: 9c pushf 19: 58 pop %rax 1a: f6 c4 02 test $0x2,%ah 1d: 75 35 jne 0x54 1f: 48 85 db test %rbx,%rbx 22: 74 01 je 0x25 24: fb sti 25: bf 01 00 00 00 mov $0x1,%edi 2a:* e8 ba 26 47 fd call 0xfffffffffd4726e9 <-- trapping instruction 2f: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b69 36: 85 c0 test %eax,%eax 38: 74 0e je 0x48 3a: 5b pop %rbx 3b: 5d pop %rbp 3c: e9 .byte 0xe9 3d: 98 cwtl 3e: 34 00 xor $0x0,%al Code starting with the faulting instruction =========================================== 0: e8 ba 26 47 fd call 0xfffffffffd4726bf 5: 65 8b 05 33 7b 1d 03 mov %gs:0x31d7b33(%rip),%eax # 0x31d7b3f c: 85 c0 test %eax,%eax e: 74 0e je 0x1e 10: 5b pop %rbx 11: 5d pop %rbp 12: e9 .byte 0xe9 13: 98 cwtl 14: 34 00 xor $0x0,%al [ 4558.722268][ C3] RSP: 0018:ffffc900034977b8 EFLAGS: 00000206 [ 4558.722271][ C3] RAX: 0000000000000046 RBX: 0000000000000200 RCX: ffffffffb546081f [ 4558.722273][ C3] RDX: 0000000000000000 RSI: ffffffffb805ce80 RDI: 0000000000000001 [ 4558.722274][ C3] RBP: ffff88800104fd00 R08: 0000000000000000 R09: 0000000000000000 [ 4558.722276][ C3] R10: ffffffffb9e8c0d7 R11: ffffc900034978e0 R12: ffff88800104fd00 [ 4558.722278][ C3] R13: ffffea00003cf000 R14: ffff888001050940 R15: ffff88800f3c32a8 [ 4558.722282][ C3] ? trace_irq_enable.constprop.0 (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/cpumask.h:638 ./include/linux/cpumask.h:1197 ./include/trace/events/preemptirq.h:40) [ 4558.722288][ C3] get_partial_node.part.0 (mm/slub.c:2903) [ 4558.722293][ C3] ___slab_alloc (mm/slub.c:2864 mm/slub.c:2981 mm/slub.c:3839) [ 4558.722296][ C3] ? xas_alloc (lib/xarray.c:378) [ 4558.722301][ C3] ? xas_alloc (lib/xarray.c:378) [ 4558.722304][ C3] __slab_alloc.constprop.0 (mm/slub.c:3949) [ 4558.722307][ C3] ? xas_alloc (lib/xarray.c:378) [ 4558.722310][ C3] kmem_cache_alloc_lru_noprof (mm/slub.c:4024 mm/slub.c:4185 mm/slub.c:4216) [ 4558.722315][ C3] xas_alloc (lib/xarray.c:378) [ 4558.722319][ C3] xas_create (lib/xarray.c:685) [ 4558.722325][ C3] xas_store (lib/xarray.c:795 (discriminator 6)) [ 4558.722329][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4558.722333][ C3] __xa_store (lib/xarray.c:1703) [ 4558.722337][ C3] ? __pfx___xa_store (lib/xarray.c:1693) [ 4558.722341][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4558.722344][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 4558.722347][ C3] ? xa_store (lib/xarray.c:1734) [ 4558.722352][ C3] xa_store (./include/linux/spinlock.h:391 lib/xarray.c:1735) [ 4558.722356][ C3] ref_tracker_dir_debugfs (./include/linux/xarray.h:175 ./include/linux/xarray.h:207 lib/ref_tracker.c:442) [ 4558.722358][ C3] ? __pfx_ref_tracker_dir_debugfs (lib/ref_tracker.c:419) [ 4558.722363][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 4558.722366][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 4558.722369][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722373][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 4558.722376][ C3] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 4558.722381][ C3] ? lockdep_init_map_type (kernel/locking/lockdep.c:4976) [ 4558.722384][ C3] ? __raw_spin_lock_init (kernel/locking/spinlock_debug.c:27) [ 4558.722389][ C3] preinit_net (./include/linux/ref_tracker.h:71 net/core/net_namespace.c:406) [ 4558.722393][ C3] copy_net_ns (net/core/net_namespace.c:567) [ 4558.722397][ C3] create_new_namespaces (kernel/nsproxy.c:110) [ 4558.722404][ C3] unshare_nsproxy_namespaces (kernel/nsproxy.c:218 (discriminator 4)) [ 4558.722407][ C3] ? handle_mm_fault (mm/memory.c:6413) [ 4558.722412][ C3] ksys_unshare (kernel/fork.c:3121) [ 4558.722417][ C3] ? __pfx_ksys_unshare (kernel/fork.c:3072) [ 4558.722421][ C3] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 4558.722424][ C3] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 21)) [ 4558.722427][ C3] ? lock_release (kernel/locking/lockdep.c:118 kernel/locking/lockdep.c:5884) [ 4558.722430][ C3] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:142 ./include/linux/mmap_lock.h:237 arch/x86/mm/fault.c:1338) [ 4558.722436][ C3] __x64_sys_unshare (kernel/fork.c:3190) [ 4558.722440][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 4558.722445][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 4558.722448][ C3] RIP: 0033:0x7f439756d93b [ 4558.722452][ C3] Code: 73 01 c3 48 8b 0d c5 94 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 95 94 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d c5 94 1b 00 mov 0x1b94c5(%rip),%rcx # 0x1b94cf a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94cf 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 95 94 1b 00 mov 0x1b9495(%rip),%rcx # 0x1b94a5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 4558.722454][ C3] RSP: 002b:00007ffcb7327b18 EFLAGS: 00000206 ORIG_RAX: 0000000000000110 [ 4558.722457][ C3] RAX: ffffffffffffffda RBX: 00007ffcb7327b50 RCX: 00007f439756d93b [ 4558.722459][ C3] RDX: 0000000000000000 RSI: 00007ffcb7327b50 RDI: 0000000040000000 [ 4558.722461][ C3] RBP: 00007f439752a000 R08: 0000000000000000 R09: 0000000000000000 [ 4558.722462][ C3] R10: 00007f4397542f18 R11: 0000000000000206 R12: 0000000000000003 Finger prints: copy_process:copy_process:queued_spin_lock_slowpath:do_raw_spin_lock:xa_store queued_spin_lock_slowpath:do_raw_spin_lock:xa_store:ref_tracker_dir_debugfs:preinit_net copy_process:copy_process:queued_spin_lock_slowpath:do_raw_spin_lock:xa_set_mark kasan_check_range:queued_spin_lock_slowpath:do_raw_spin_lock:xa_store:ref_tracker_dir_debugfs __kasan_check_read:queued_spin_lock_slowpath:do_raw_spin_lock:xa_set_mark:ref_tracker_dir_exit copy_process:copy_process:kasan_check_range:queued_spin_lock_slowpath:do_raw_spin_lock __kasan_check_read:queued_spin_lock_slowpath:do_raw_spin_lock:xa_store:ref_tracker_dir_debugfs copy_process:copy_process:__kasan_check_read:queued_spin_lock_slowpath:do_raw_spin_lock kasan_check_range:queued_spin_lock_slowpath:do_raw_spin_lock:xa_set_mark:ref_tracker_dir_exit mark_lock_irq:mark_lock:mark_usage:__lock_acquire:_raw_spin_lock queued_spin_lock_slowpath:do_raw_spin_lock:xa_set_mark:ref_tracker_dir_exit:__put_net