====================================== | | xx__-> [ 1746.254772][ C2] ------------[ cut here ]------------ | [ 1746.255411][ C2] WARNING: CPU: 2 PID: 17024 at ./include/linux/skbuff.h:1164 __xfrm_route_forward (./include/linux/skbuff.h:1164 ./include/linux/skbuff.h:1178 net/xfrm/xfrm_policy.c:3898) | [ 1746.256072][ C2] Modules linked in: sha1_generic xt_policy sctp sch_fq netdevsim ipt_rpfilter act_mirred act_tunnel_key bareudp mpls_gso mpls_iptunnel mpls_router xt_conntrack act_gact cls_flower sch_ingress nft_chain_nat xt_nat nf_nat nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 nft_compat nf_tables bonding psample xfrm_user macsec vxlan ip6_gre ip_gre gre cls_u32 sch_htb [last unloaded: netdevsim] [ 1746.259521][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 1746.259938][ C2] RIP: 0010:__xfrm_route_forward (./include/linux/skbuff.h:1164 ./include/linux/skbuff.h:1178 net/xfrm/xfrm_policy.c:3898) [ 1746.260372][ C2] Code: 00 fc ff df 4c 89 ea 48 c1 ea 03 80 3c 02 00 0f 85 f7 03 00 00 48 8b 43 58 a8 01 0f 85 34 02 00 00 48 a9 fe ff ff ff 74 04 90 <0f> 0b 90 48 8d bb 81 00 00 00 48 ba 00 00 00 00 00 fc ff df 48 89 All code ======== 0: 00 fc add %bh,%ah 2: ff lcall (bad) 3: df 4c 89 ea fisttps -0x16(%rcx,%rcx,4) 7: 48 c1 ea 03 shr $0x3,%rdx b: 80 3c 02 00 cmpb $0x0,(%rdx,%rax,1) f: 0f 85 f7 03 00 00 jne 0x40c 15: 48 8b 43 58 mov 0x58(%rbx),%rax 19: a8 01 test $0x1,%al 1b: 0f 85 34 02 00 00 jne 0x255 21: 48 a9 fe ff ff ff test $0xfffffffffffffffe,%rax 27: 74 04 je 0x2d 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: 48 8d bb 81 00 00 00 lea 0x81(%rbx),%rdi 34: 48 ba 00 00 00 00 00 movabs $0xdffffc0000000000,%rdx 3b: fc ff df 3e: 48 rex.W 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: 48 8d bb 81 00 00 00 lea 0x81(%rbx),%rdi a: 48 ba 00 00 00 00 00 movabs $0xdffffc0000000000,%rdx 11: fc ff df 14: 48 rex.W 15: 89 .byte 0x89 [ 1746.261530][ C2] RSP: 0018:ffffc90000218a00 EFLAGS: 00010282 [ 1746.261965][ C2] RAX: ffff88800b734f40 RBX: ffff8880154f3a80 RCX: 0000000000000001 [ 1746.262476][ C2] RDX: 1ffff11002a9e75b RSI: 0000000000000001 RDI: ffff88800b59a660 [ 1746.262962][ C2] RBP: 1ffff92000043142 R08: 0000000000000001 R09: ffffed10016e69f0 [ 1746.263450][ C2] R10: ffff88800b734f83 R11: ffff88806573a8d8 R12: 0000000000000002 [ 1746.263936][ C2] R13: ffff8880154f3ad8 R14: ffffc90000218a30 R15: ffff88800b59a640 [ 1746.264424][ C2] FS: 00007f5b7204d300(0000) GS:ffff8880c9292000(0000) knlGS:0000000000000000 [ 1746.264996][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1746.265414][ C2] CR2: 00007f5b7229d8b0 CR3: 0000000018f28004 CR4: 0000000000772ef0 [ 1746.265899][ C2] PKRU: 55555554 [ 1746.266152][ C2] Call Trace: [ 1746.266415][ C2] [ 1746.266590][ C2] ? __pfx___xfrm_route_forward (net/xfrm/xfrm_policy.c:3872) [ 1746.266947][ C2] ip_forward (./include/net/xfrm.h:1363 ./include/net/xfrm.h:1369 net/ipv4/ip_forward.c:121) [ 1746.267292][ C2] ip_rcv (./include/net/dst.h:471 ./include/net/dst.h:469 net/ipv4/ip_input.c:454 ./include/linux/netfilter.h:317 ./include/linux/netfilter.h:311 net/ipv4/ip_input.c:574) [ 1746.267556][ C2] ? __pfx_ip_rcv (net/ipv4/ip_input.c:567) [ 1746.267884][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 1746.268210][ C2] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 1746.268555][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 1746.268890][ C2] ? __pfx_ip_rcv (net/ipv4/ip_input.c:567) [ 1746.269210][ C2] ? process_backlog (./include/linux/local_lock_internal.h:54 net/core/dev.c:6442) [ 1746.269544][ C2] __netif_receive_skb_one_core (net/core/dev.c:5979 (discriminator 4)) [ 1746.269951][ C2] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5972) [ 1746.270363][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1746.270685][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 1746.271008][ C2] ? process_backlog (./include/linux/local_lock_internal.h:54 net/core/dev.c:6442) [ 1746.271336][ C2] process_backlog (./include/linux/rcupdate.h:869 net/core/dev.c:6445) [ 1746.271682][ C2] __napi_poll.constprop.0 (net/core/dev.c:7482) [ 1746.272016][ C2] net_rx_action (net/core/dev.c:7546 net/core/dev.c:7673) [ 1746.272343][ C2] ? __pfx_net_rx_action (net/core/dev.c:7635) [ 1746.272685][ C2] ? clockevents_program_event (kernel/time/clockevents.c:326) [ 1746.273008][ C2] ? lock_downgrade (kernel/locking/lockdep.c:468 kernel/locking/lockdep.c:5763) [ 1746.273336][ C2] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:95 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 1746.273675][ C2] ? ktime_get (kernel/time/timekeeping.c:251 (discriminator 4) kernel/time/timekeeping.c:360 (discriminator 4) kernel/time/timekeeping.c:778 (discriminator 4)) [ 1746.273931][ C2] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 1746.274331][ C2] handle_softirqs (kernel/softirq.c:580) [ 1746.274671][ C2] ? __neigh_event_send (./include/linux/bottom_half.h:33 net/core/neighbour.c:1240) [ 1746.275001][ C2] do_softirq (kernel/softirq.c:480 kernel/softirq.c:467) [ 1746.275249][ C2] [ 1746.275432][ C2] [ 1746.275600][ C2] __local_bh_enable_ip (kernel/softirq.c:407) [ 1746.275929][ C2] __neigh_event_send (net/core/neighbour.c:1241) [ 1746.276260][ C2] neigh_resolve_output (net/core/neighbour.c:1545) [ 1746.276593][ C2] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:119 kernel/softirq.c:412) [ 1746.276916][ C2] ? ___neigh_create (net/core/neighbour.c:693) [ 1746.277255][ C2] ip_finish_output2 (./include/net/neighbour.h:547 net/ipv4/ip_output.c:235) [ 1746.277594][ C2] ? ip_skb_dst_mtu (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 ./include/net/ip.h:501 ./include/net/ip.h:515) [ 1746.277919][ C2] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 1746.278246][ C2] ? __ip_finish_output (./include/linux/skbuff.h:1685 ./include/linux/skbuff.h:5079 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 1746.278583][ C2] ip_output (./include/linux/netfilter.h:306 net/ipv4/ip_output.c:433) [ 1746.278833][ C2] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 1746.279158][ C2] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 1746.279495][ C2] ? __ip_make_skb (net/ipv4/ip_output.c:1382 net/ipv4/ip_output.c:1492) [ 1746.279841][ C2] ? __pfx_raw_getfrag (net/ipv4/raw.c:453) [ 1746.280160][ C2] ? ip_append_data (net/ipv4/ip_output.c:1371 net/ipv4/ip_output.c:1350) [ 1746.280496][ C2] ip_push_pending_frames (./include/net/dst.h:461 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1501 net/ipv4/ip_output.c:1521) [ 1746.280841][ C2] raw_sendmsg (net/ipv4/raw.c:658) [ 1746.281178][ C2] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 1746.281520][ C2] ? __pfx_raw_sendmsg (net/ipv4/raw.c:483) [ 1746.281849][ C2] ? do_fault_around (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 mm/memory.c:5551) [ 1746.282175][ C2] ? __lock_release (kernel/locking/lockdep.c:5539) [ 1746.282543][ C2] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 1746.282887][ C2] ? __might_fault (mm/memory.c:6971 mm/memory.c:6965) [ 1746.283219][ C2] ? __lock_release (kernel/locking/lockdep.c:5539) [ 1746.283564][ C2] ? __might_fault (mm/memory.c:6971 mm/memory.c:6965) [ 1746.283904][ C2] __sys_sendto (net/socket.c:714 net/socket.c:729 net/socket.c:2228) [ 1746.284226][ C2] ? __pfx___sys_sendto (net/socket.c:2195) [ 1746.284569][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 1746.284896][ C2] ? rseq_update_cpu_node_id (kernel/rseq.c:189 (discriminator 10)) [ 1746.285222][ C2] ? __rseq_handle_notify_resume (kernel/rseq.c:442) [ 1746.285629][ C2] ? __pfx___rseq_handle_notify_resume (kernel/rseq.c:425) [ 1746.286032][ C2] __x64_sys_sendto (net/socket.c:2231) [ 1746.286369][ C2] ? do_syscall_64 (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:119 ./include/linux/entry-common.h:199 arch/x86/entry/syscall_64.c:90) [ 1746.286704][ C2] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 1746.287044][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 1746.287406][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 1746.287823][ C2] RIP: 0033:0x7f5b722e428a [ 1746.288173][ C2] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 1746.289374][ C2] RSP: 002b:00007ffdd28141b8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 1746.289883][ C2] RAX: ffffffffffffffda RBX: 0000000000000038 RCX: 00007f5b722e428a [ 1746.290397][ C2] RDX: 0000000000000040 RSI: 00000000309f03f0 RDI: 0000000000000005 [ 1746.290909][ C2] RBP: 00007ffdd2814210 R08: 00000000004185e0 R09: 0000000000000010 [ 1746.291420][ C2] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000054 Finger prints: __xfrm_route_forward:ip_forward:ip_rcv:__netif_receive_skb_one_core:process_backlog