====================================== | [ 22.862915][ T38] br0: port 2(eth1) entered forwarding state | [ 28.159947][ C3] ------------[ cut here ]------------ | [ 28.160477][ C3] WARNING: CPU: 3 PID: 362 at ./include/linux/skbuff.h:1164 icmp_route_lookup.constprop.0 (./include/linux/skbuff.h:1164 ./include/linux/skbuff.h:1178 net/ipv4/icmp.c:548) | [ 28.161175][ C3] Modules linked in: [ 28.162084][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 28.162502][ C3] RIP: 0010:icmp_route_lookup.constprop.0 (./include/linux/skbuff.h:1164 ./include/linux/skbuff.h:1178 net/ipv4/icmp.c:548) [ 28.162934][ C3] Code: ea 03 80 3c 02 00 0f 85 4f 05 00 00 49 8b 44 24 58 48 89 44 24 08 a8 01 0f 85 39 02 00 00 48 f7 44 24 08 fe ff ff ff 74 04 90 <0f> 0b 90 48 b8 00 00 00 00 00 fc ff df 4c 89 da 48 c1 ea 03 80 3c All code ======== 0: ea (bad) 1: 03 80 3c 02 00 0f add 0xf00023c(%rax),%eax 7: 85 4f 05 test %ecx,0x5(%rdi) a: 00 00 add %al,(%rax) c: 49 8b 44 24 58 mov 0x58(%r12),%rax 11: 48 89 44 24 08 mov %rax,0x8(%rsp) 16: a8 01 test $0x1,%al 18: 0f 85 39 02 00 00 jne 0x257 1e: 48 f7 44 24 08 fe ff testq $0xfffffffffffffffe,0x8(%rsp) 25: ff ff 27: 74 04 je 0x2d 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 34: fc ff df 37: 4c 89 da mov %r11,%rdx 3a: 48 c1 ea 03 shr $0x3,%rdx 3e: 80 .byte 0x80 3f: 3c .byte 0x3c Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax a: fc ff df d: 4c 89 da mov %r11,%rdx 10: 48 c1 ea 03 shr $0x3,%rdx 14: 80 .byte 0x80 15: 3c .byte 0x3c [ 28.164132][ C3] RSP: 0018:ffffc900002705e8 EFLAGS: 00010282 [ 28.164566][ C3] RAX: ffff88800eb28040 RBX: 1ffff9200004e0c1 RCX: 0000000000000002 [ 28.165063][ C3] RDX: 1ffff1100211b2b3 RSI: ffffffffa13123fb RDI: ffffc9000027069a [ 28.165568][ C3] RBP: ffff888005f13940 R08: 0000000000000001 R09: ffff88800eb290c0 [ 28.166058][ C3] R10: ffffe8ffffd8c1c7 R11: ffff8880108d9598 R12: ffff8880108d9540 [ 28.166561][ C3] R13: ffffc90000270898 R14: ffff88800eb29240 R15: ffffc90000270628 [ 28.167061][ C3] FS: 00007f62e6f68300(0000) GS:ffff8880c9712000(0000) knlGS:0000000000000000 [ 28.167647][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 28.168363][ C3] CR2: 0000564fd8ea70a8 CR3: 000000000d212005 CR4: 0000000000772ef0 [ 28.168866][ C3] PKRU: 55555554 [ 28.169118][ C3] Call Trace: [ 28.169378][ C3] [ 28.169554][ C3] ? __pfx_icmp_route_lookup.constprop.0 (net/ipv4/icmp.c:480) [ 28.169981][ C3] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 28.170335][ C3] ? __ip_options_echo (net/ipv4/ip_options.c:86) [ 28.170680][ C3] ? __icmp_send (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/ipv4/icmp.c:718) [ 28.171009][ C3] ? __lock_release (kernel/locking/lockdep.c:5539) [ 28.171349][ C3] __icmp_send (net/ipv4/icmp.c:746) [ 28.171697][ C3] ? __pfx___icmp_send (net/ipv4/icmp.c:596) [ 28.172034][ C3] ? fib_lookup.constprop.0 (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 ./include/net/ip_fib.h:403) [ 28.172376][ C3] ? ip_route_input_slow (net/ipv4/route.c:2177 net/ipv4/route.c:2385) [ 28.172708][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 28.173046][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 28.173395][ C3] ip_rt_send_redirect (net/ipv4/route.c:920) [ 28.173727][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 28.174056][ C3] ? __pfx_ip_rt_send_redirect (net/ipv4/route.c:868) [ 28.174394][ C3] ? ip_dst_mtu_maybe_forward.constprop.0 (./include/linux/rcupdate.h:873 ./include/net/ip.h:501) [ 28.174799][ C3] ? __lock_release (kernel/locking/lockdep.c:5539) [ 28.175131][ C3] ? ip_forward (net/ipv4/ip_forward.c:157) [ 28.175465][ C3] ip_forward (net/ipv4/ip_forward.c:157) [ 28.175792][ C3] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 28.176126][ C3] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 28.176460][ C3] ip_rcv (./include/net/dst.h:471 ./include/net/dst.h:469 net/ipv4/ip_input.c:454 ./include/linux/netfilter.h:317 ./include/linux/netfilter.h:311 net/ipv4/ip_input.c:574) [ 28.176712][ C3] ? __pfx_ip_rcv (net/ipv4/ip_input.c:567) [ 28.177039][ C3] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 28.177374][ C3] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 28.177709][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 28.178043][ C3] ? __pfx_ip_rcv (net/ipv4/ip_input.c:567) [ 28.178374][ C3] ? process_backlog (./include/linux/local_lock_internal.h:54 net/core/dev.c:6442) [ 28.178713][ C3] __netif_receive_skb_one_core (net/core/dev.c:5979 (discriminator 4)) [ 28.179120][ C3] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5972) [ 28.179535][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 28.179860][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 28.180192][ C3] ? process_backlog (./include/linux/local_lock_internal.h:54 net/core/dev.c:6442) [ 28.180528][ C3] process_backlog (./include/linux/rcupdate.h:869 net/core/dev.c:6445) [ 28.180869][ C3] __napi_poll.constprop.0 (net/core/dev.c:7482) [ 28.181205][ C3] net_rx_action (net/core/dev.c:7546 net/core/dev.c:7673) [ 28.181543][ C3] ? __pfx_net_rx_action (net/core/dev.c:7635) [ 28.181868][ C3] ? clockevents_program_event (kernel/time/clockevents.c:326) [ 28.182209][ C3] ? lock_downgrade (kernel/locking/lockdep.c:468 kernel/locking/lockdep.c:5763) [ 28.182542][ C3] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:95 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 28.182875][ C3] ? ktime_get (kernel/time/timekeeping.c:251 (discriminator 4) kernel/time/timekeeping.c:360 (discriminator 4) kernel/time/timekeeping.c:778 (discriminator 4)) [ 28.183134][ C3] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 28.183559][ C3] handle_softirqs (kernel/softirq.c:580) [ 28.183898][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:908 net/core/dev.c:4740) [ 28.184234][ C3] do_softirq (kernel/softirq.c:480 kernel/softirq.c:467) [ 28.184482][ C3] [ 28.184659][ C3] [ 28.184825][ C3] __local_bh_enable_ip (kernel/softirq.c:407) [ 28.185151][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:908 net/core/dev.c:4740) [ 28.185486][ C3] __dev_queue_xmit (net/core/dev.c:4741) [ 28.185812][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 28.186147][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4621) [ 28.186486][ C3] ? neigh_hh_output (./include/linux/seqlock.h:74 ./include/linux/seqlock.h:836 ./include/net/neighbour.h:501) [ 28.186812][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 28.187150][ C3] ? neigh_hh_output (./include/linux/seqlock.h:74 ./include/linux/seqlock.h:836 ./include/net/neighbour.h:501) [ 28.187493][ C3] ip_finish_output2 (./include/net/neighbour.h:545 net/ipv4/ip_output.c:235) [ 28.187828][ C3] ? ip_skb_dst_mtu (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 ./include/net/ip.h:501 ./include/net/ip.h:515) [ 28.188156][ C3] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 28.188496][ C3] ? __ip_finish_output (./include/linux/skbuff.h:1685 ./include/linux/skbuff.h:5079 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 28.188830][ C3] ip_output (./include/linux/netfilter.h:306 net/ipv4/ip_output.c:433) [ 28.189076][ C3] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 28.189410][ C3] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 28.189734][ C3] ? __ip_make_skb (net/ipv4/ip_output.c:1382 net/ipv4/ip_output.c:1492) [ 28.190064][ C3] ? __pfx_raw_getfrag (net/ipv4/raw.c:453) [ 28.190409][ C3] ? ip_append_data (net/ipv4/ip_output.c:1371 net/ipv4/ip_output.c:1350) [ 28.190766][ C3] ip_push_pending_frames (./include/net/dst.h:461 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1501 net/ipv4/ip_output.c:1521) [ 28.191098][ C3] raw_sendmsg (net/ipv4/raw.c:658) [ 28.191441][ C3] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 28.191769][ C3] ? __pfx_raw_sendmsg (net/ipv4/raw.c:483) [ 28.192098][ C3] ? do_fault_around (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 mm/memory.c:5551) [ 28.192441][ C3] ? __lock_release (kernel/locking/lockdep.c:5539) [ 28.192791][ C3] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 28.193125][ C3] ? __might_fault (mm/memory.c:6971 mm/memory.c:6965) [ 28.193460][ C3] ? __lock_release (kernel/locking/lockdep.c:5539) [ 28.193790][ C3] ? __might_fault (mm/memory.c:6971 mm/memory.c:6965) [ 28.194120][ C3] __sys_sendto (net/socket.c:714 net/socket.c:729 net/socket.c:2228) [ 28.194465][ C3] ? __pfx___sys_sendto (net/socket.c:2195) [ 28.194805][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 28.195134][ C3] ? rseq_update_cpu_node_id (kernel/rseq.c:189 (discriminator 10)) [ 28.195479][ C3] ? __rseq_handle_notify_resume (kernel/rseq.c:442) [ 28.195890][ C3] ? __pfx___rseq_handle_notify_resume (kernel/rseq.c:425) [ 28.196300][ C3] ? xfd_validate_state (arch/x86/kernel/fpu/xstate.c:1473 arch/x86/kernel/fpu/xstate.c:1517) [ 28.196633][ C3] __x64_sys_sendto (net/socket.c:2231) [ 28.196958][ C3] ? do_syscall_64 (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:119 ./include/linux/entry-common.h:199 arch/x86/entry/syscall_64.c:90) [ 28.197298][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 28.197627][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 28.197957][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 28.198377][ C3] RIP: 0033:0x7f62e71ff28a [ 28.198722][ C3] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 28.199904][ C3] RSP: 002b:00007ffe0ab000b8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 28.200422][ C3] RAX: ffffffffffffffda RBX: 0000000000000040 RCX: 00007f62e71ff28a [ 28.200921][ C3] RDX: 0000000000000048 RSI: 00000000163062a0 RDI: 0000000000000005 [ 28.201424][ C3] RBP: 00007ffe0ab00110 R08: 00000000004185e0 R09: 0000000000000010 [ 28.201917][ C3] R10: 0000000000000000 R11: 0000000000000246 R12: 000000000000005c Finger prints: __icmp_send:ip_rt_send_redirect:ip_forward:ip_rcv:__netif_receive_skb_one_core