[ 69.065928][ T68] ================================================================== [ 69.066268][ T68] BUG: KASAN: null-ptr-deref in try_to_grab_pending+0x81/0x6c0 [ 69.066613][ T68] Write of size 8 at addr 0000000000000000 by task kworker/u16:1/68 [ 69.066902][ T68] [ 69.067004][ T68] CPU: 1 UID: 0 PID: 68 Comm: kworker/u16:1 Not tainted 6.18.0-rc5-virtme #1 PREEMPT(full) [ 69.067010][ T68] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 69.067013][ T68] Workqueue: netns cleanup_net [ 69.067025][ T68] Call Trace: [ 69.067027][ T68] [ 69.067031][ T68] dump_stack_lvl+0x82/0xc0 [ 69.067040][ T68] ? try_to_grab_pending+0x81/0x6c0 [ 69.067045][ T68] kasan_report+0xca/0x100 [ 69.067053][ T68] ? try_to_grab_pending+0x81/0x6c0 [ 69.067059][ T68] kasan_check_range+0x39/0x1b0 [ 69.067063][ T68] try_to_grab_pending+0x81/0x6c0 [ 69.067068][ T68] __cancel_work+0x7c/0x260 [ 69.067071][ T68] ? enable_delayed_work+0x10/0x10 [ 69.067077][ T68] ? xdp_rxq_info_unreg+0x46/0xc0 [ 69.067084][ T68] __cancel_work_sync+0x18/0xc0 [ 69.067088][ T68] __dev_close_many+0x1cf/0x980 [ 69.067093][ T68] ? netdev_notify_peers+0x20/0x20 [ 69.067097][ T68] ? netif_close_many+0x201/0x650 [ 69.067102][ T68] netif_close_many+0x201/0x650 [ 69.067105][ T68] ? __mutex_handoff+0x2b0/0x2b0 [ 69.067111][ T68] ? __dev_close_many+0x980/0x980 [ 69.067114][ T68] ? netif_close_many_and_unlock+0x21/0x2a0 [ 69.067117][ T68] ? trace_contention_end+0xd8/0x140 [ 69.067122][ T68] unregister_netdevice_many_notify+0x30a/0x1c90 [ 69.067126][ T68] ? default_device_exit_batch+0x80/0x2d0 [ 69.067131][ T68] ? mutex_is_locked+0x1c/0x50 [ 69.067134][ T68] ? dev_ingress_queue_create+0x190/0x190 [ 69.067138][ T68] ? rtnl_is_locked+0x15/0x20 [ 69.067142][ T68] ? unregister_netdevice_queue+0x6f/0x410 [ 69.067145][ T68] ? unregister_netdevice_many+0x20/0x20 [ 69.067149][ T68] ? unregister_netdevice_many+0x20/0x20 [ 69.067155][ T68] default_device_exit_batch+0x235/0x2d0 [ 69.067158][ T68] ? unregister_netdev+0x60/0x60 [ 69.067164][ T68] ops_undo_list+0x2bf/0x890 [ 69.067170][ T68] ? rtnl_net_dumpid_one+0x270/0x270 [ 69.067173][ T68] ? cleanup_net+0x2d6/0x8b0 [ 69.067180][ T68] cleanup_net+0x3b2/0x8b0 [ 69.067184][ T68] ? net_passive_dec+0x190/0x190 [ 69.067189][ T68] ? rcu_is_watching+0x12/0xb0 [ 69.067196][ T68] process_one_work+0xe35/0x1650 [ 69.067203][ T68] ? pwq_dec_nr_in_flight+0x550/0x550 [ 69.067209][ T68] ? assign_work+0x168/0x240 [ 69.067213][ T68] worker_thread+0x591/0xcf0 [ 69.067219][ T68] ? rescuer_thread+0xd10/0xd10 [ 69.067223][ T68] kthread+0x37b/0x5f0 [ 69.067229][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.067231][ T68] ? ret_from_fork+0x1b/0x270 [ 69.067235][ T68] ? __lock_release+0x5d/0x170 [ 69.067239][ T68] ? rcu_is_watching+0x12/0xb0 [ 69.067242][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.067249][ T68] ret_from_fork+0x1db/0x270 [ 69.067253][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.067257][ T68] ret_from_fork_asm+0x11/0x20 [ 69.067269][ T68] [ 69.067270][ T68] ================================================================== [ 69.077463][ T68] Disabling lock debugging due to kernel taint [ 69.077710][ T68] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 69.077960][ T68] #PF: supervisor write access in kernel mode [ 69.078180][ T68] #PF: error_code(0x0002) - not-present page [ 69.078411][ T68] PGD 0 P4D 0 [ 69.078550][ T68] Oops: Oops: 0002 [#1] SMP KASAN [ 69.078739][ T68] CPU: 1 UID: 0 PID: 68 Comm: kworker/u16:1 Tainted: G B 6.18.0-rc5-virtme #1 PREEMPT(full) [ 69.079131][ T68] Tainted: [B]=BAD_PAGE [ 69.079268][ T68] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 69.079488][ T68] Workqueue: netns cleanup_net [ 69.079686][ T68] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 69.079918][ T68] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 1f 93 82 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 69.080525][ T68] RSP: 0018:ffffc90000497680 EFLAGS: 00010046 [ 69.080758][ T68] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff93649b8a [ 69.081024][ T68] RDX: fffffbfff306cacd RSI: 0000000000000008 RDI: ffffffff98365660 [ 69.081299][ T68] RBP: ffffc900004976e8 R08: 0000000000000001 R09: fffffbfff306cacc [ 69.081570][ T68] R10: ffffffff98365667 R11: ffffc90000497140 R12: 0000000000000000 [ 69.081837][ T68] R13: 0000000000000282 R14: ffff88800e78c000 R15: dffffc0000000000 [ 69.082092][ T68] FS: 0000000000000000(0000) GS:ffff8880d4d87000(0000) knlGS:0000000000000000 [ 69.082410][ T68] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 69.082634][ T68] CR2: 0000000000000000 CR3: 0000000037749003 CR4: 0000000000772ef0 [ 69.082901][ T68] PKRU: 55555554 [ 69.083032][ T68] Call Trace: [ 69.083160][ T68] [ 69.083259][ T68] __cancel_work+0x7c/0x260 [ 69.083442][ T68] ? enable_delayed_work+0x10/0x10 [ 69.083629][ T68] ? xdp_rxq_info_unreg+0x46/0xc0 [ 69.083829][ T68] __cancel_work_sync+0x18/0xc0 [ 69.084012][ T68] __dev_close_many+0x1cf/0x980 [ 69.084187][ T68] ? netdev_notify_peers+0x20/0x20 [ 69.084382][ T68] ? netif_close_many+0x201/0x650 [ 69.084564][ T68] netif_close_many+0x201/0x650 [ 69.084747][ T68] ? __mutex_handoff+0x2b0/0x2b0 [ 69.084932][ T68] ? __dev_close_many+0x980/0x980 [ 69.085100][ T68] ? netif_close_many_and_unlock+0x21/0x2a0 [ 69.085324][ T68] ? trace_contention_end+0xd8/0x140 [ 69.085496][ T68] unregister_netdevice_many_notify+0x30a/0x1c90 [ 69.085722][ T68] ? default_device_exit_batch+0x80/0x2d0 [ 69.085895][ T68] ? mutex_is_locked+0x1c/0x50 [ 69.086065][ T68] ? dev_ingress_queue_create+0x190/0x190 [ 69.086239][ T68] ? rtnl_is_locked+0x15/0x20 [ 69.086415][ T68] ? unregister_netdevice_queue+0x6f/0x410 [ 69.086633][ T68] ? unregister_netdevice_many+0x20/0x20 [ 69.086813][ T68] ? unregister_netdevice_many+0x20/0x20 [ 69.086987][ T68] default_device_exit_batch+0x235/0x2d0 [ 69.087156][ T68] ? unregister_netdev+0x60/0x60 [ 69.087339][ T68] ops_undo_list+0x2bf/0x890 [ 69.087513][ T68] ? rtnl_net_dumpid_one+0x270/0x270 [ 69.087708][ T68] ? cleanup_net+0x2d6/0x8b0 [ 69.087882][ T68] cleanup_net+0x3b2/0x8b0 [ 69.088052][ T68] ? net_passive_dec+0x190/0x190 [ 69.088220][ T68] ? rcu_is_watching+0x12/0xb0 [ 69.088404][ T68] process_one_work+0xe35/0x1650 [ 69.088588][ T68] ? pwq_dec_nr_in_flight+0x550/0x550 [ 69.088771][ T68] ? assign_work+0x168/0x240 [ 69.088938][ T68] worker_thread+0x591/0xcf0 [ 69.089109][ T68] ? rescuer_thread+0xd10/0xd10 [ 69.089289][ T68] kthread+0x37b/0x5f0 [ 69.089420][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.089593][ T68] ? ret_from_fork+0x1b/0x270 [ 69.089781][ T68] ? __lock_release+0x5d/0x170 [ 69.089954][ T68] ? rcu_is_watching+0x12/0xb0 [ 69.090121][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.090298][ T68] ret_from_fork+0x1db/0x270 [ 69.090465][ T68] ? kthread_is_per_cpu+0xc0/0xc0 [ 69.090646][ T68] ret_from_fork_asm+0x11/0x20 [ 69.090829][ T68] [ 69.090962][ T68] Modules linked in: cls_bpf sch_ingress [ 69.091148][ T68] CR2: 0000000000000000 [ 69.091292][ T68] ---[ end trace 0000000000000000 ]--- [ 69.091469][ T68] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 69.091713][ T68] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 1f 93 82 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 69.092329][ T68] RSP: 0018:ffffc90000497680 EFLAGS: 00010046 [ 69.092551][ T68] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff93649b8a [ 69.092822][ T68] RDX: fffffbfff306cacd RSI: 0000000000000008 RDI: ffffffff98365660 [ 69.093075][ T68] RBP: ffffc900004976e8 R08: 0000000000000001 R09: fffffbfff306cacc [ 69.093343][ T68] R10: ffffffff98365667 R11: ffffc90000497140 R12: 0000000000000000 [ 69.093616][ T68] R13: 0000000000000282 R14: ffff88800e78c000 R15: dffffc0000000000 [ 69.093883][ T68] FS: 0000000000000000(0000) GS:ffff8880d4d87000(0000) knlGS:0000000000000000 [ 69.094293][ T68] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 69.094595][ T68] CR2: 0000000000000000 CR3: 0000000037749003 CR4: 0000000000772ef0 [ 69.094881][ T68] PKRU: 55555554 [ 69.095107][ T68] Kernel panic - not syncing: Fatal exception [ 69.095416][ T68] Kernel Offset: 0x12000000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 69.095819][ T68] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr