====================================== | | WAIT TIMEOUT stdout | [ 5231.787456][T11380] Oops: general protection fault, probably for non-canonical address 0xdffffc000000000b: 0000 [#1] SMP KASAN | [ 5231.787841][T11380] KASAN: null-ptr-deref in range [0x0000000000000058-0x000000000000005f] [ 5231.788355][T11380] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [5231.788549][T11380] RIP: 0010:__mkroute_output (net/ipv4/route.c:2663) [ 5231.788715][T11380] Code: 24 30 48 c1 ea 03 80 3c 02 00 0f 85 c3 06 00 00 48 b8 00 00 00 00 00 fc ff df 49 8b 5c 24 18 48 8d 7b 58 48 89 fa 48 c1 ea 03 <80> 3c 02 00 0f 85 95 06 00 00 48 8b 5b 58 49 8d 7f 10 48 b8 00 00 All code ======== 0: 24 30 and $0x30,%al 2: 48 c1 ea 03 shr $0x3,%rdx 6: 80 3c 02 00 cmpb $0x0,(%rdx,%rax,1) a: 0f 85 c3 06 00 00 jne 0x6d3 10: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 17: fc ff df 1a: 49 8b 5c 24 18 mov 0x18(%r12),%rbx 1f: 48 8d 7b 58 lea 0x58(%rbx),%rdi 23: 48 89 fa mov %rdi,%rdx 26: 48 c1 ea 03 shr $0x3,%rdx 2a:* 80 3c 02 00 cmpb $0x0,(%rdx,%rax,1) <-- trapping instruction 2e: 0f 85 95 06 00 00 jne 0x6c9 34: 48 8b 5b 58 mov 0x58(%rbx),%rbx 38: 49 8d 7f 10 lea 0x10(%r15),%rdi 3c: 48 rex.W 3d: b8 .byte 0xb8 ... Code starting with the faulting instruction =========================================== 0: 80 3c 02 00 cmpb $0x0,(%rdx,%rax,1) 4: 0f 85 95 06 00 00 jne 0x69f a: 48 8b 5b 58 mov 0x58(%rbx),%rbx e: 49 8d 7f 10 lea 0x10(%r15),%rdi 12: 48 rex.W 13: b8 .byte 0xb8 ... [ 5231.789261][T11380] RSP: 0018:ffffc90003547bc0 EFLAGS: 00010202 [ 5231.789465][T11380] RAX: dffffc0000000000 RBX: 0000000000000000 RCX: ffffffffab09259f [ 5231.789707][T11380] RDX: 000000000000000b RSI: 0000000000000004 RDI: 0000000000000058 [ 5231.789940][T11380] RBP: ffff888005afd608 R08: 0000000000000000 R09: ffffed10027acbd5 [ 5231.790169][T11380] R10: ffff888013d65eaf R11: ffff88800a3115f0 R12: ffffc90003547c60 [ 5231.790404][T11380] R13: ffff88801a872000 R14: 0000000090000000 R15: ffff88800da35540 [ 5231.790632][T11380] FS: 00007fd7f7a18300(0000) GS:ffff8880b94ac000(0000) knlGS:0000000000000000 [ 5231.790901][T11380] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5231.791096][T11380] CR2: 00007fd7f7cc4ac0 CR3: 000000000c5cf002 CR4: 0000000000772ef0 [ 5231.791332][T11380] PKRU: 55555554 [ 5231.791449][T11380] Call Trace: [ 5231.791563][T11380] [5231.791645][T11380] ip_route_output_key_hash (net/ipv4/route.c:2701) [5231.791804][T11380] ? ip_route_output_key_hash_rcu (net/ipv4/route.c:2688) [5231.791999][T11380] ip_route_output_flow (net/ipv4/route.c:2930) [5231.792150][T11380] __ip4_datagram_connect (./include/net/route.h:355 net/ipv4/datagram.c:49) [5231.792305][T11380] ? inet_autobind (net/ipv4/af_inet.c:570) [5231.792461][T11380] udp_connect (net/ipv4/udp.c:2153) [5231.792579][T11380] __sys_connect (./include/linux/file.h:62 ./include/linux/file.h:83 net/socket.c:2095) [5231.792730][T11380] ? __sys_connect_file (net/socket.c:2093) [5231.792884][T11380] ? fd_install (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 fs/file.c:676) [5231.793044][T11380] ? fd_install (./arch/x86/include/asm/preempt.h:104 ./include/linux/rcupdate.h:955 fs/file.c:676) [5231.793196][T11380] ? __sys_socket (net/socket.c:503 net/socket.c:1740) [5231.793353][T11380] ? update_socket_protocol+0x10/0x10 [5231.793507][T11380] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:143 ./include/linux/mmap_lock.h:267 arch/x86/mm/fault.c:1338) [5231.793664][T11380] __x64_sys_connect (net/socket.c:2108) [5231.793815][T11380] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [5231.793968][T11380] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [5231.794123][T11380] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 5231.794309][T11380] RIP: 0033:0x7fd7f7caed77 [ 5231.794473][T11380] Code: 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2a 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 18 89 54 24 0c 48 89 34 24 89 All code ======== 0: 64 89 01 mov %eax,%fs:(%rcx) 3: 48 83 c8 ff or $0xffffffffffffffff,%rax 7: c3 ret 8: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) f: 00 00 00 12: 90 nop 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2a 00 00 00 mov $0x2a,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 18 sub $0x18,%rsp 37: 89 54 24 0c mov %edx,0xc(%rsp) 3b: 48 89 34 24 mov %rsi,(%rsp) 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 18 sub $0x18,%rsp d: 89 54 24 0c mov %edx,0xc(%rsp) 11: 48 89 34 24 mov %rsi,(%rsp) 15: 89 .byte 0x89 [ 5231.795014][T11380] RSP: 002b:00007fff5f6c8868 EFLAGS: 00000246 ORIG_RAX: 000000000000002a [ 5231.795249][T11380] RAX: ffffffffffffffda RBX: 00007fff5f6c9972 RCX: 00007fd7f7caed77 [ 5231.795478][T11380] RDX: 0000000000000010 RSI: 00007fff5f6c88d0 RDI: 0000000000000007 [ 5231.795708][T11380] RBP: 00007fff5f6c8f20 R08: 00000000000000ff R09: 0000000000000000 [ 5231.795937][T11380] R10: 00007fd7f7ba65a0 R11: 0000000000000246 R12: 00007fff5f6c9278 Finger prints: __mkroute_output:ip_route_output_key_hash:ip_route_output_flow:__ip4_datagram_connect:udp_connect