[ 16.554448][ T276] ip (276) used greatest stack depth: 24656 bytes left [ 16.666420][ T279] ================================================================== [ 16.666740][ T279] BUG: KASAN: null-ptr-deref in try_to_grab_pending+0x81/0x6c0 [ 16.667040][ T279] Write of size 8 at addr 0000000000000000 by task ip/279 [ 16.667304][ T279] [ 16.667406][ T279] CPU: 2 UID: 0 PID: 279 Comm: ip Not tainted 6.18.0-rc5-virtme #1 PREEMPT(full) [ 16.667411][ T279] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 16.667413][ T279] Call Trace: [ 16.667415][ T279] [ 16.667417][ T279] dump_stack_lvl+0x82/0xc0 [ 16.667424][ T279] ? try_to_grab_pending+0x81/0x6c0 [ 16.667429][ T279] kasan_report+0xca/0x100 [ 16.667435][ T279] ? try_to_grab_pending+0x81/0x6c0 [ 16.667441][ T279] kasan_check_range+0x39/0x1b0 [ 16.667445][ T279] try_to_grab_pending+0x81/0x6c0 [ 16.667449][ T279] __cancel_work+0x7c/0x260 [ 16.667453][ T279] ? enable_delayed_work+0x10/0x10 [ 16.667458][ T279] ? qdisc_destroy+0x50/0x50 [ 16.667464][ T279] __cancel_work_sync+0x18/0xc0 [ 16.667468][ T279] __dev_close_many+0x1cf/0x980 [ 16.667474][ T279] ? netdev_notify_peers+0x20/0x20 [ 16.667476][ T279] ? rcu_is_watching+0x12/0xb0 [ 16.667481][ T279] ? trace_contention_end+0xd8/0x140 [ 16.667486][ T279] ? __mutex_lock+0x19f/0x1190 [ 16.667493][ T279] netif_close_many+0x201/0x650 [ 16.667497][ T279] ? ww_mutex_lock+0x160/0x160 [ 16.667501][ T279] ? __dev_close_many+0x980/0x980 [ 16.667505][ T279] ? __mutex_handoff+0x2b0/0x2b0 [ 16.667509][ T279] netif_close_many_and_unlock+0x21/0x2a0 [ 16.667514][ T279] unregister_netdevice_many_notify+0xeed/0x1c90 [ 16.667518][ T279] ? rtnl_dellink+0x227/0xa30 [ 16.667524][ T279] ? dev_ingress_queue_create+0x190/0x190 [ 16.667527][ T279] ? rtnl_is_locked+0x15/0x20 [ 16.667530][ T279] ? unregister_netdevice_queue+0x6f/0x410 [ 16.667534][ T279] ? unregister_netdevice_many+0x20/0x20 [ 16.667537][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.667539][ T279] ? __nla_validate_parse+0x48/0x3d0 [ 16.667546][ T279] rtnl_dellink+0x344/0xa30 [ 16.667550][ T279] ? valid_bridge_getlink_req.constprop.0+0x640/0x640 [ 16.667570][ T279] ? find_held_lock+0x2b/0x80 [ 16.667575][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.667580][ T279] ? find_held_lock+0x2b/0x80 [ 16.667584][ T279] ? rtnetlink_rcv_msg+0x6e6/0xc00 [ 16.667587][ T279] ? __lock_release+0x5d/0x170 [ 16.667591][ T279] ? valid_bridge_getlink_req.constprop.0+0x640/0x640 [ 16.667594][ T279] rtnetlink_rcv_msg+0x709/0xc00 [ 16.667599][ T279] ? rtnl_port_fill+0x890/0x890 [ 16.667602][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.667608][ T279] netlink_rcv_skb+0x121/0x340 [ 16.667611][ T279] ? rtnl_port_fill+0x890/0x890 [ 16.667615][ T279] ? netlink_ack+0xdf0/0xdf0 [ 16.667622][ T279] ? netlink_deliver_tap+0x13e/0x340 [ 16.667624][ T279] ? netlink_deliver_tap+0xc3/0x340 [ 16.667628][ T279] netlink_unicast+0x4aa/0x780 [ 16.667632][ T279] ? netlink_attachskb+0x810/0x810 [ 16.667635][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.667640][ T279] netlink_sendmsg+0x714/0xbd0 [ 16.667644][ T279] ? netlink_unicast+0x780/0x780 [ 16.667648][ T279] ? __import_iovec+0x230/0x3b0 [ 16.667652][ T279] ? netlink_unicast+0x780/0x780 [ 16.667655][ T279] ____sys_sendmsg+0x3dd/0x890 [ 16.667659][ T279] ? get_timestamp.constprop.0+0x370/0x370 [ 16.667661][ T279] ? __copy_msghdr+0x3c0/0x3c0 [ 16.667669][ T279] ___sys_sendmsg+0xed/0x170 [ 16.667671][ T279] ? kasan_record_aux_stack+0x8c/0xa0 [ 16.667675][ T279] ? __call_rcu_common.constprop.0+0xa8/0x630 [ 16.667679][ T279] ? copy_msghdr_from_user+0x110/0x110 [ 16.667683][ T279] ? find_held_lock+0x2b/0x80 [ 16.667688][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.667693][ T279] ? find_held_lock+0x2b/0x80 [ 16.667696][ T279] ? __virt_addr_valid+0x22a/0x450 [ 16.667701][ T279] ? __lock_release+0x5d/0x170 [ 16.667706][ T279] __sys_sendmsg+0x10b/0x1a0 [ 16.667709][ T279] ? __call_rcu_common.constprop.0+0x318/0x630 [ 16.667712][ T279] ? __sys_sendmsg_sock+0x20/0x20 [ 16.667719][ T279] ? rcu_is_watching+0x12/0xb0 [ 16.667723][ T279] do_syscall_64+0xc1/0xfd0 [ 16.667728][ T279] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 16.667731][ T279] RIP: 0033:0x7ff67c6131d7 [ 16.667735][ T279] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 16.667738][ T279] RSP: 002b:00007ffd814e9aa8 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 16.667741][ T279] RAX: ffffffffffffffda RBX: 00007ffd814ea1d0 RCX: 00007ff67c6131d7 [ 16.667744][ T279] RDX: 0000000000000000 RSI: 00007ffd814e9b10 RDI: 0000000000000005 [ 16.667745][ T279] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 16.667747][ T279] R10: 00007ff67c50ff60 R11: 0000000000000246 R12: 0000000000000002 [ 16.667749][ T279] R13: 00000000691cdadd R14: 0000000000499600 R15: 0000000000000000 [ 16.667755][ T279] [ 16.667757][ T279] ================================================================== [ 16.684569][ T279] Disabling lock debugging due to kernel taint [ 16.684797][ T279] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 16.685067][ T279] #PF: supervisor write access in kernel mode [ 16.685301][ T279] #PF: error_code(0x0002) - not-present page [ 16.685518][ T279] PGD 14e1d067 P4D 14e1d067 PUD 14e1e067 PMD 0 [ 16.685751][ T279] Oops: Oops: 0002 [#1] SMP KASAN [ 16.685943][ T279] CPU: 2 UID: 0 PID: 279 Comm: ip Tainted: G B 6.18.0-rc5-virtme #1 PREEMPT(full) [ 16.686322][ T279] Tainted: [B]=BAD_PAGE [ 16.686460][ T279] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 16.686683][ T279] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 16.686932][ T279] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 1f 93 82 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 16.687586][ T279] RSP: 0018:ffffc90000d56eb8 EFLAGS: 00010046 [ 16.687812][ T279] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffffb9449b8a [ 16.688085][ T279] RDX: fffffbfff7c2cacd RSI: 0000000000000008 RDI: ffffffffbe165660 [ 16.688372][ T279] RBP: ffffc90000d56f20 R08: 0000000000000001 R09: fffffbfff7c2cacc [ 16.688639][ T279] R10: ffffffffbe165667 R11: ffffc90000d56980 R12: 0000000000000000 [ 16.688911][ T279] R13: 0000000000000286 R14: ffff888002664000 R15: dffffc0000000000 [ 16.689185][ T279] FS: 00007ff67c445800(0000) GS:ffff8880af007000(0000) knlGS:0000000000000000 [ 16.689507][ T279] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 16.689732][ T279] CR2: 0000000000000000 CR3: 0000000004cdd006 CR4: 0000000000772ef0 [ 16.690007][ T279] PKRU: 55555554 [ 16.690143][ T279] Call Trace: [ 16.690289][ T279] [ 16.690386][ T279] __cancel_work+0x7c/0x260 [ 16.690567][ T279] ? enable_delayed_work+0x10/0x10 [ 16.690753][ T279] ? qdisc_destroy+0x50/0x50 [ 16.690944][ T279] __cancel_work_sync+0x18/0xc0 [ 16.691121][ T279] __dev_close_many+0x1cf/0x980 [ 16.691314][ T279] ? netdev_notify_peers+0x20/0x20 [ 16.691490][ T279] ? rcu_is_watching+0x12/0xb0 [ 16.691668][ T279] ? trace_contention_end+0xd8/0x140 [ 16.691846][ T279] ? __mutex_lock+0x19f/0x1190 [ 16.692035][ T279] netif_close_many+0x201/0x650 [ 16.692225][ T279] ? ww_mutex_lock+0x160/0x160 [ 16.692412][ T279] ? __dev_close_many+0x980/0x980 [ 16.692590][ T279] ? __mutex_handoff+0x2b0/0x2b0 [ 16.692768][ T279] netif_close_many_and_unlock+0x21/0x2a0 [ 16.692950][ T279] unregister_netdevice_many_notify+0xeed/0x1c90 [ 16.693178][ T279] ? rtnl_dellink+0x227/0xa30 [ 16.693369][ T279] ? dev_ingress_queue_create+0x190/0x190 [ 16.693551][ T279] ? rtnl_is_locked+0x15/0x20 [ 16.693727][ T279] ? unregister_netdevice_queue+0x6f/0x410 [ 16.693951][ T279] ? unregister_netdevice_many+0x20/0x20 [ 16.694128][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.694323][ T279] ? __nla_validate_parse+0x48/0x3d0 [ 16.694506][ T279] rtnl_dellink+0x344/0xa30 [ 16.694683][ T279] ? valid_bridge_getlink_req.constprop.0+0x640/0x640 [ 16.694931][ T279] ? find_held_lock+0x2b/0x80 [ 16.695112][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.695303][ T279] ? find_held_lock+0x2b/0x80 [ 16.695482][ T279] ? rtnetlink_rcv_msg+0x6e6/0xc00 [ 16.695659][ T279] ? __lock_release+0x5d/0x170 [ 16.695837][ T279] ? valid_bridge_getlink_req.constprop.0+0x640/0x640 [ 16.696068][ T279] rtnetlink_rcv_msg+0x709/0xc00 [ 16.696258][ T279] ? rtnl_port_fill+0x890/0x890 [ 16.696444][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.696624][ T279] netlink_rcv_skb+0x121/0x340 [ 16.696799][ T279] ? rtnl_port_fill+0x890/0x890 [ 16.696986][ T279] ? netlink_ack+0xdf0/0xdf0 [ 16.697177][ T279] ? netlink_deliver_tap+0x13e/0x340 [ 16.697375][ T279] ? netlink_deliver_tap+0xc3/0x340 [ 16.697554][ T279] netlink_unicast+0x4aa/0x780 [ 16.697732][ T279] ? netlink_attachskb+0x810/0x810 [ 16.697915][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.698096][ T279] netlink_sendmsg+0x714/0xbd0 [ 16.698271][ T279] ? netlink_unicast+0x780/0x780 [ 16.698457][ T279] ? __import_iovec+0x230/0x3b0 [ 16.698633][ T279] ? netlink_unicast+0x780/0x780 [ 16.698810][ T279] ____sys_sendmsg+0x3dd/0x890 [ 16.698996][ T279] ? get_timestamp.constprop.0+0x370/0x370 [ 16.699215][ T279] ? __copy_msghdr+0x3c0/0x3c0 [ 16.699401][ T279] ___sys_sendmsg+0xed/0x170 [ 16.699581][ T279] ? kasan_record_aux_stack+0x8c/0xa0 [ 16.699759][ T279] ? __call_rcu_common.constprop.0+0xa8/0x630 [ 16.699985][ T279] ? copy_msghdr_from_user+0x110/0x110 [ 16.700163][ T279] ? find_held_lock+0x2b/0x80 [ 16.700346][ T279] ? __lock_acquire+0x449/0x7e0 [ 16.700524][ T279] ? find_held_lock+0x2b/0x80 [ 16.700700][ T279] ? __virt_addr_valid+0x22a/0x450 [ 16.700878][ T279] ? __lock_release+0x5d/0x170 [ 16.701064][ T279] __sys_sendmsg+0x10b/0x1a0 [ 16.701239][ T279] ? __call_rcu_common.constprop.0+0x318/0x630 [ 16.701467][ T279] ? __sys_sendmsg_sock+0x20/0x20 [ 16.701647][ T279] ? rcu_is_watching+0x12/0xb0 [ 16.701827][ T279] do_syscall_64+0xc1/0xfd0 [ 16.702015][ T279] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 16.702237][ T279] RIP: 0033:0x7ff67c6131d7 [ 16.702435][ T279] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 16.703076][ T279] RSP: 002b:00007ffd814e9aa8 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 16.703349][ T279] RAX: ffffffffffffffda RBX: 00007ffd814ea1d0 RCX: 00007ff67c6131d7 [ 16.703616][ T279] RDX: 0000000000000000 RSI: 00007ffd814e9b10 RDI: 0000000000000005 [ 16.703887][ T279] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 16.704161][ T279] R10: 00007ff67c50ff60 R11: 0000000000000246 R12: 0000000000000002 [ 16.704432][ T279] R13: 00000000691cdadd R14: 0000000000499600 R15: 0000000000000000 [ 16.704702][ T279] [ 16.704834][ T279] Modules linked in: [ 16.704982][ T279] CR2: 0000000000000000 [ 16.705215][ T279] ---[ end trace 0000000000000000 ]--- [ 16.705404][ T279] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 16.705640][ T279] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 1f 93 82 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 16.706386][ T279] RSP: 0018:ffffc90000d56eb8 EFLAGS: 00010046 [ 16.706611][ T279] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffffb9449b8a [ 16.706991][ T279] RDX: fffffbfff7c2cacd RSI: 0000000000000008 RDI: ffffffffbe165660 [ 16.707291][ T279] RBP: ffffc90000d56f20 R08: 0000000000000001 R09: fffffbfff7c2cacc [ 16.707793][ T279] R10: ffffffffbe165667 R11: ffffc90000d56980 R12: 0000000000000000 [ 16.708075][ T279] R13: 0000000000000286 R14: ffff888002664000 R15: dffffc0000000000 [ 16.708345][ T279] FS: 00007ff67c445800(0000) GS:ffff8880af007000(0000) knlGS:0000000000000000 [ 16.708756][ T279] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 16.708983][ T279] CR2: 0000000000000000 CR3: 0000000004cdd006 CR4: 0000000000772ef0 [ 16.709246][ T279] PKRU: 55555554 [ 16.709478][ T279] Kernel panic - not syncing: Fatal exception [ 16.709786][ T279] Kernel Offset: 0x37e00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 16.710216][ T279] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr