====================================== | [ 579.373290][ T3658] br0: port 2(vxlan_a) entered forwarding state | [ 579.761914][ C2] ------------[ cut here ]------------ | [ 579.762321][ C2] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 579.762697][ C2] load of value 107 is not a valid value for type '_Bool' [ 579.763516][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 579.764169][ C2] Workqueue: ipv6_addrconf addrconf_dad_work [ 579.764502][ C2] Call Trace: [ 579.764687][ C2] [ 579.764847][ C2] dump_stack_lvl (lib/dump_stack.c:107) [ 579.765121][ C2] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 579.765477][ C2] br_forward_finish.cold (./include/linux/skbuff.h:4267 net/bridge/br_forward.c:65) [ 579.765775][ C2] deliver_clone (net/bridge/br_forward.c:132) [ 579.766035][ C2] br_handle_frame_finish (net/bridge/br_input.c:215) [ 579.766329][ C2] ? __pfx_br_handle_frame_finish (net/bridge/br_input.c:75) [ 579.766664][ C2] br_handle_frame (net/bridge/br_input.c:417) [ 579.766930][ C2] ? __pfx_br_ DETECTED CRASH, lowering timeout handle_frame+0x10/0x10 [ 579.767212][ C2] __netif_receive_skb_core.constprop.0 (net/core/dev.c:5448) [ 579.767699][ C2] ? udp_queue_rcv_one_skb (./include/linux/skbuff.h:4450 ./include/net/udp.h:120 net/ipv4/udp.c:2110) [ 579.768140][ C2] ? udp_unicast_rcv_skb (net/ipv4/udp.c:2357 (discriminator 3)) [ 579.768555][ C2] ? __pfx_validate_chain (kernel/locking/lockdep.c:3825) [ 579.768962][ C2] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5341) [ 579.769518][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 579.769902][ C2] ? lock_sync (kernel/locking/lockdep.c:5806) [ 579.770255][ C2] __netif_receive_skb_list_core (net/core/dev.c:5631) [ 579.770721][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 579.771121][ C2] ? netif_receive_skb_list_internal (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5773) [ 579.771612][ C2] ? __pfx___netif_receive_skb_list_core (net/core/dev.c:5607) [ 579.772129][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 579.772495][ C2] ? netif_receive_skb_list_internal (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5773) [ 579.772990][ C2] netif_receive_skb_list_internal (net/core/dev.c:5699 net/core/dev.c:5788) [ 579.773472][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.773828][ C2] ? __pfx_netif_receive_skb_list_internal (net/core/dev.c:5760) [ 579.774341][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 579.774773][ C2] napi_complete_done (./include/linux/list.h:37 ./include/net/gro.h:440 ./include/net/gro.h:435 net/core/dev.c:6128) [ 579.775169][ C2] ? __pfx_napi_complete_done (net/core/dev.c:6095) [ 579.775592][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.775980][ C2] gro_cell_poll (net/core/gro_cells.c:67) [ 579.776359][ C2] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 579.776780][ C2] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 579.777162][ C2] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 579.777738][ C2] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 579.778125][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.778506][ C2] __do_softirq (kernel/softirq.c:553) [ 579.778788][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 579.779062][ C2] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 579.779280][ C2] [ 579.779444][ C2] [ 579.779597][ C2] __local_bh_enable_ip (kernel/softirq.c:381) [ 579.779860][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 579.780122][ C2] __dev_queue_xmit (net/core/dev.c:4365) [ 579.780383][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.780633][ C2] ? eth_header (net/ethernet/eth.c:100) [ 579.780873][ C2] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 579.781150][ C2] ? neigh_resolve_output (./include/linux/netdevice.h:3226 net/core/neighbour.c:1558 net/core/neighbour.c:1543) [ 579.781462][ C2] ip6_finish_output2 (./include/net/neighbour.h:542 net/ipv6/ip6_output.c:137) [ 579.781734][ C2] ip6_finish_output (net/ipv6/ip6_output.c:211 net/ipv6/ip6_output.c:222) [ 579.781996][ C2] ip6_output (./include/linux/netfilter.h:303 net/ipv6/ip6_output.c:243) [ 579.782224][ C2] ? __pfx_ip6_output (net/ipv6/ip6_output.c:230) [ 579.782475][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 579.782749][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.782983][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 579.783240][ C2] NF_HOOK.constprop.0 (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/netfilter.h:238 ./include/linux/netfilter.h:312) [ 579.783503][ C2] ? __pfx_NF_HOOK.constprop.0 (./include/linux/netfilter.h:308) [ 579.783792][ C2] ? __pfx_xfrm_lookup_with_ifid (net/xfrm/xfrm_policy.c:3133) [ 579.784097][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.784433][ C2] ? icmp6_dst_alloc (net/ipv6/route.c:3292) [ 579.784690][ C2] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 579.784965][ C2] mld_sendpack (net/ipv6/mcast.c:1822) [ 579.785212][ C2] ? ipv6_mc_dad_complete (net/ipv6/mcast.c:2242) [ 579.785486][ C2] ? __pfx_mld_sendpack (net/ipv6/mcast.c:1779) [ 579.785767][ C2] ipv6_mc_dad_complete (./include/linux/refcount.h:190 net/ipv6/mcast.c:2244) [ 579.786037][ C2] addrconf_dad_completed (net/ipv6/addrconf.c:4343) [ 579.786321][ C2] ? __pfx_addrconf_dad_completed (net/ipv6/addrconf.c:4309) [ 579.786624][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.786879][ C2] ? addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.787146][ C2] addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.787416][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.787655][ C2] ? __pfx_addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.787945][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.788284][ C2] addrconf_dad_work (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:261 ./include/linux/refcount.h:304 ./include/linux/refcount.h:322 ./include/net/addrconf.h:427 net/ipv6/addrconf.c:4285) [ 579.788542][ C2] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 579.788835][ C2] ? __pfx_addrconf_dad_work (net/ipv6/addrconf.c:4180) [ 579.789118][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 579.789362][ C2] ? process_one_work (kernel/workqueue.c:2609) [ 579.789644][ C2] process_one_work (kernel/workqueue.c:2633) [ 579.789938][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.790288][ C2] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 579.790675][ C2] ? assign_work (kernel/workqueue.c:1101) [ 579.791015][ C2] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 579.791316][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.791830][ C2] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 579.792227][ C2] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 579.792620][ C2] kthread (kernel/kthread.c:388) [ 579.792939][ C2] ? __pfx_kthread (kernel/kthread.c:341) [ 579.793299][ C2] ret_from_fork (arch/x86/kernel/process.c:147) [ 579.793650][ C2] ? __pfx_kthread (kernel/kthread.c:341) [ 579.794009][ C2] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 579.794698][ C2] ---[ end trace ]--- | [ 579.795030][ C2] ------------[ cut here ]------------ | [ 579.795539][ C2] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 579.796076][ C2] load of value 107 is not a valid value for type '_Bool' [ 579.797235][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 579.798162][ C2] Workqueue: ipv6_addrconf addrconf_dad_work [ 579.798626][ C2] Call Trace: [ 579.798886][ C2] [ 579.799112][ C2] dump_stack_lvl (lib/dump_stack.c:107) [ 579.799469][ C2] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 579.799957][ C2] skb_scrub_packet.cold (./include/linux/skbuff.h:4267 net/core/skbuff.c:6030) [ 579.800367][ C2] __dev_forward_skb2 (./include/linux/netdevice.h:4115 net/core/dev.c:2135) [ 579.800645][ C2] veth_xmit (drivers/net/veth.c:319 drivers/net/veth.c:374) [ 579.800874][ C2] dev_hard_start_xmit (./include/linux/netdevice.h:4991 ./include/linux/netdevice.h:5005 net/core/dev.c:3530 net/core/dev.c:3546) [ 579.801147][ C2] __dev_queue_xmit (./include/linux/netdevice.h:3369 net/core/dev.c:4338) [ 579.801425][ C2] ? vprintk_emit (kernel/printk/printk.c:2313) [ 579.801772][ C2] ? _printk (kernel/printk/printk.c:2323) [ 579.801986][ C2] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 579.802350][ C2] br_dev_queue_push_xmit (net/bridge/br_forward.c:34) [ 579.802719][ C2] ? __pfx_br_dev_queue_push_xmit (net/bridge/br_forward.c:34) [ 579.803187][ C2] deliver_clone (net/bridge/br_forward.c:132) [ 579.803522][ C2] br_handle_frame_finish (net/bridge/br_input.c:215) [ 579.803963][ C2] ? __pfx_br_handle_frame_finish (net/bridge/br_input.c:75) [ 579.804477][ C2] br_handle_frame (net/bridge/br_input.c:417) [ 579.804862][ C2] ? __pfx_br_handle_frame (net/bridge/br_input.c:321) [ 579.805281][ C2] __netif_receive_skb_core.constprop.0 (net/core/dev.c:5448) [ 579.805801][ C2] ? udp_queue_rcv_one_skb (./include/linux/skbuff.h:4450 ./include/net/udp.h:120 net/ipv4/udp.c:2110) [ 579.806244][ C2] ? udp_unicast_rcv_skb (net/ipv4/udp.c:2357 (discriminator 3)) [ 579.806664][ C2] ? __pfx_validate_chain (kernel/locking/lockdep.c:3825) [ 579.807076][ C2] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5341) [ 579.807648][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 579.808038][ C2] ? lock_sync (kernel/locking/lockdep.c:5806) [ 579.808397][ C2] __netif_receive_skb_list_core (net/core/dev.c:5631) [ 579.808869][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 579.809274][ C2] ? netif_receive_skb_list_internal (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5773) [ 579.809774][ C2] ? __pfx___netif_receive_skb_list_core (net/core/dev.c:5607) [ 579.810296][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 579.810662][ C2] ? netif_receive_skb_list_internal (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5773) [ 579.811163][ C2] netif_receive_skb_list_internal (net/core/dev.c:5699 net/core/dev.c:5788) [ 579.811645][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.812003][ C2] ? __pfx_netif_receive_skb_list_internal (net/core/dev.c:5760) [ 579.812527][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 579.812969][ C2] napi_complete_done (./include/linux/list.h:37 ./include/net/gro.h:440 ./include/net/gro.h:435 net/core/dev.c:6128) [ 579.813370][ C2] ? __pfx_napi_complete_done (net/core/dev.c:6095) [ 579.813801][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.814196][ C2] gro_cell_poll (net/core/gro_cells.c:67) [ 579.814583][ C2] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 579.815010][ C2] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 579.815398][ C2] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 579.815799][ C2] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 579.816187][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.816561][ C2] __do_softirq (kernel/softirq.c:553) [ 579.816920][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 579.817348][ C2] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 579.817575][ C2] [ 579.817732][ C2] [ 579.817885][ C2] __local_bh_enable_ip (kernel/softirq.c:381) [ 579.818149][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 579.818430][ C2] __dev_queue_xmit (net/core/dev.c:4365) [ 579.818691][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.818941][ C2] ? eth_header (net/ethernet/eth.c:100) [ 579.819181][ C2] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 579.819490][ C2] ? neigh_resolve_output (./include/linux/netdevice.h:3226 net/core/neighbour.c:1558 net/core/neighbour.c:1543) [ 579.819781][ C2] ip6_finish_output2 (./include/net/neighbour.h:542 net/ipv6/ip6_output.c:137) [ 579.820051][ C2] ip6_finish_output (net/ipv6/ip6_output.c:211 net/ipv6/ip6_output.c:222) [ 579.820322][ C2] ip6_output (./include/linux/netfilter.h:303 net/ipv6/ip6_output.c:243) [ 579.820603][ C2] ? __pfx_ip6_output (net/ipv6/ip6_output.c:230) [ 579.820855][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 579.821149][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.821415][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 579.821693][ C2] NF_HOOK.constprop.0 (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/netfilter.h:238 ./include/linux/netfilter.h:312) [ 579.821971][ C2] ? __pfx_NF_HOOK.constprop.0 (./include/linux/netfilter.h:308) [ 579.822262][ C2] ? __pfx_xfrm_lookup_with_ifid (net/xfrm/xfrm_policy.c:3133) [ 579.822584][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.822920][ C2] ? icmp6_dst_alloc (net/ipv6/route.c:3292) [ 579.823197][ C2] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 579.823514][ C2] mld_sendpack (net/ipv6/mcast.c:1822) [ 579.823754][ C2] ? ipv6_mc_dad_complete (net/ipv6/mcast.c:2242) [ 579.824026][ C2] ? __pfx_mld_sendpack (net/ipv6/mcast.c:1779) [ 579.824329][ C2] ipv6_mc_dad_complete (./include/linux/refcount.h:190 net/ipv6/mcast.c:2244) [ 579.824641][ C2] addrconf_dad_completed (net/ipv6/addrconf.c:4343) [ 579.824944][ C2] ? __pfx_addrconf_dad_completed (net/ipv6/addrconf.c:4309) [ 579.825268][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 579.825559][ C2] ? addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.825826][ C2] addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.826104][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.826353][ C2] ? __pfx_addrconf_dad_begin (net/ipv6/addrconf.c:4096) [ 579.826669][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.827029][ C2] addrconf_dad_work (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:261 ./include/linux/refcount.h:304 ./include/linux/refcount.h:322 ./include/net/addrconf.h:427 net/ipv6/addrconf.c:4285) [ 579.827336][ C2] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 579.827672][ C2] ? __pfx_addrconf_dad_work (net/ipv6/addrconf.c:4180) [ 579.827956][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 579.828198][ C2] ? process_one_work (kernel/workqueue.c:2609) [ 579.828483][ C2] process_one_work (kernel/workqueue.c:2633) [ 579.828749][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 579.829007][ C2] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 579.829318][ C2] ? assign_work (kernel/workqueue.c:1101) [ 579.829622][ C2] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 579.829868][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 579.830229][ C2] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 579.830520][ C2] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 579.830783][ C2] kthread (kernel/kthread.c:388) [ 579.831017][ C2] ? __pfx_kthread (kernel/kthread.c:341) [ 579.831275][ C2] ret_from_fork (arch/x86/kernel/process.c:147) [ 579.831533][ C2] ? __pfx_kthread (kernel/kthread.c:341) [ 579.831781][ C2] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 579.832272][ C2] ---[ end trace ]--- | [ 583.301467][ C1] ------------[ cut here ]------------ | [ 583.301796][ C1] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 583.302153][ C1] load of value 107 is not a valid value for type '_Bool' [ 583.302914][ C1] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 583.303532][ C1] Call Trace: [ 583.303706][ C1] [ 583.303857][ C1] dump_stack_lvl (lib/dump_stack.c:107) [ 583.304103][ C1] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 583.304431][ C1] ip_forward_finish.cold (./include/linux/skbuff.h:4267 net/ipv4/ip_forward.c:79) [ 583.304709][ C1] NF_HOOK.constprop.0 (./include/linux/netfilter.h:314) [ 583.304975][ C1] ? __pfx_NF_HOOK.constprop.0 (./include/linux/netfilter.h:308) [ 583.305268][ C1] ? __netif_receive_skb_core.constprop.0 (net/core/dev.c:5442) [ 583.305622][ C1] ? ip_dst_mtu_maybe_forward.constprop.0 (./include/net/net_namespace.h:383 ./include/linux/netdevice.h:2654 ./include/net/ip.h:465) [ 583.305965][ C1] ? ip_forward (net/ipv4/ip_forward.c:45 net/ipv4/ip_forward.c:135) [ 583.306216][ C1] ip_rcv (./include/net/dst.h:460 ./include/net/dst.h:458 net/ipv4/ip_input.c:449 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv4/ip_input.c:569) [ 583.306426][ C1] ? __pfx_ip_rcv (net/ipv4/ip_input.c:562) [ 583.306671][ C1] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 583.306942][ C1] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 583.307202][ C1] ? __pfx_ip_rcv (net/ipv4/ip_input.c:562) [ 583.307451][ C1] __netif_receive_skb_one_core (net/core/dev.c:5554 (discriminator 4)) [ 583.307757][ C1] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5547) [ 583.308091][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 583.308334][ C1] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 583.308596][ C1] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5997) [ 583.308851][ C1] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 583.309133][ C1] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 583.309386][ C1] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 583.309652][ C1] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 583.309913][ C1] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 583.310157][ C1] ? hrtimer_interrupt (kernel/time/hrtimer.c:1828) [ 583.310431][ C1] __do_softirq (kernel/softirq.c:553) [ 583.310675][ C1] ? __neigh_event_send (./include/linux/bottom_half.h:33 net/core/neighbour.c:1245) [ 583.310952][ C1] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 583.311171][ C1] [ 583.311325][ C1] [ 583.311479][ C1] __local_bh_enable_ip (kernel/softirq.c:381) [ 583.311745][ C1] __neigh_event_send (./arch/x86/include/asm/jump_label.h:27 ./include/linux/jump_label.h:207 ./include/trace/events/neigh.h:237 net/core/neighbour.c:1246) [ 583.312021][ C1] neigh_resolve_output (net/core/neighbour.c:1547) [ 583.312290][ C1] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 583.312563][ C1] ? ___neigh_create (net/core/neighbour.c:722 (discriminator 9)) [ 583.312828][ C1] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 583.313091][ C1] ? __pfx_get_random_u32 (drivers/char/random.c:532) [ 583.313363][ C1] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 583.313623][ C1] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 583.313908][ C1] ? __ip_finish_output (./include/linux/skbuff.h:1627 ./include/linux/skbuff.h:4943 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 583.314180][ C1] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 583.314400][ C1] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 583.314652][ C1] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 583.314898][ C1] ? __ip_make_skb (net/ipv4/ip_output.c:1377 net/ipv4/ip_output.c:1486) [ 583.315156][ C1] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 583.315413][ C1] ? ip_append_data (net/ipv4/ip_output.c:1366 net/ipv4/ip_output.c:1345) [ 583.315668][ C1] ip_push_pending_frames (./include/net/dst.h:450 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1495 net/ipv4/ip_output.c:1515) [ 583.315949][ C1] raw_sendmsg (net/ipv4/raw.c:648) [ 583.316194][ C1] ? __pfx_raw_sendmsg (net/ipv4/raw.c:476) [ 583.316468][ C1] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 583.316702][ C1] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 583.316958][ C1] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 583.317225][ C1] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 583.317468][ C1] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 583.317711][ C1] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 583.317959][ C1] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 583.318215][ C1] __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 583.318458][ C1] ? __pfx___sys_sendto (net/socket.c:2161) [ 583.318720][ C1] ? do_user_addr_fault (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/mm.h:686 arch/x86/mm/fault.c:1366) [ 583.319006][ C1] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 583.319242][ C1] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 583.319496][ C1] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 583.319765][ C1] ? __up_read (./arch/x86/include/asm/atomic64_64.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2735 ./include/linux/atomic/atomic-long.h:184 ./include/linux/atomic/atomic-instrumented.h:3289 kernel/locking/rwsem.c:1347) [ 583.319999][ C1] ? __pfx___up_read (kernel/locking/rwsem.c:1339) [ 583.320253][ C1] ? do_user_addr_fault (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:783 ./include/linux/mm.h:688 arch/x86/mm/fault.c:1366) [ 583.320528][ C1] __x64_sys_sendto (net/socket.c:2199) [ 583.320777][ C1] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 583.321119][ C1] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 583.321360][ C1] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 583.321663][ C1] RIP: 0033:0x7ff5b4c6b85a [ 583.321905][ C1] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 583.322879][ C1] RSP: 002b:00007fff23e731e8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 583.323308][ C1] RAX: ffffffffffffffda RBX: 0000000000001194 RCX: 00007ff5b4c6b85a [ 583.323711][ C1] RDX: 000000000000119c RSI: 00000000012c2340 RDI: 0000000000000005 [ 583.324115][ C1] RBP: 00007fff23e73240 R08: 00000000004185e0 R09: 0000000000000010 [ 583.324521][ C1] R10: 0000000000000000 R11: 0000000000000246 R12: 00000000000011b0 [ 583.324933][ C1] R13: 000000000040305a R14: 0000000000415dd0 R15: 00007ff5b4d8b000 | [ 716.441589][ T4426] br0: port 2(vxlan_a) entered forwarding state | [ 720.352107][ C2] ------------[ cut here ]------------ | [ 720.352490][ C2] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 720.352861][ C2] load of value 107 is not a valid value for type '_Bool' [ 720.353669][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 720.354319][ C2] Call Trace: [ 720.354511][ C2] [ 720.354661][ C2] dump_stack_lvl (lib/dump_stack.c:107) [ 720.354929][ C2] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 720.355264][ C2] ip6_forward.cold (./include/linux/skbuff.h:4267 net/ipv6/ip6_output.c:471 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_output.c:660) [ 720.355554][ C2] ? __pfx_ip6_forward (net/ipv6/ip6_output.c:494) [ 720.355831][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 720.356121][ C2] ? udp_v6_early_demux (net/ipv6/udp.c:1067 net/ipv6/udp.c:1097) [ 720.356445][ C2] ? ipv6_rcv (./include/net/dst.h:460 ./include/net/dst.h:458 net/ipv6/ip6_input.c:79 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_input.c:310) [ 720.356689][ C2] ipv6_rcv (./include/net/dst.h:460 ./include/net/dst.h:458 net/ipv6/ip6_input.c:79 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_input.c:310) [ 720.356923][ C2] ? __pfx_ipv6_rcv (net/ipv6/ip6_input.c:304) [ 720.357192][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 720.357493][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 720.357759][ C2] ? __pfx_ipv6_rcv (net/ipv6/ip6_input.c:304) [ 720.358021][ C2] __netif_receive_skb_one_core (net/core/dev.c:5547) [ 720.358334][ C2] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5547) [ 720.358674][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 720.358939][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 720.359202][ C2] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5997) [ 720.359472][ C2] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 720.359758][ C2] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 720.360008][ C2] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 720.360275][ C2] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 720.360537][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 720.360792][ C2] __do_softirq (kernel/softirq.c:553) [ 720.361040][ C2] ? __neigh_event_send (./include/linux/bottom_half.h:33 net/core/neighbour.c:1245) [ 720.361326][ C2] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 720.361558][ C2] [ 720.361720][ C2] [ 720.361875][ C2] __local_bh_enable_ip (kernel/softirq.c:381) [ 720.362146][ C2] __neigh_event_send (./arch/x86/include/asm/jump_label.h:27 ./include/linux/jump_label.h:207 ./include/trace/events/neigh.h:237 net/core/neighbour.c:1246) [ 720.362424][ C2] neigh_resolve_output (net/core/neighbour.c:1547) [ 720.362701][ C2] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 720.362992][ C2] ? ___neigh_create (net/core/neighbour.c:722 (discriminator 9)) [ 720.363295][ C2] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 720.363577][ C2] ? __pfx_get_random_u32 (drivers/char/random.c:532) [ 720.363875][ C2] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 720.364135][ C2] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 720.364448][ C2] ? __ip_finish_output (./include/linux/skbuff.h:1627 ./include/linux/skbuff.h:4943 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 720.364751][ C2] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 720.364986][ C2] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 720.365246][ C2] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 720.365493][ C2] ? __ip_make_skb (net/ipv4/ip_output.c:1377 net/ipv4/ip_output.c:1486) [ 720.365779][ C2] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 720.366056][ C2] ? ip_append_data (net/ipv4/ip_output.c:1366 net/ipv4/ip_output.c:1345) [ 720.366328][ C2] ip_push_pending_frames (./include/net/dst.h:450 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1495 net/ipv4/ip_output.c:1515) [ 720.366626][ C2] raw_sendmsg (net/ipv4/raw.c:648) [ 720.366880][ C2] ? __pfx_raw_sendmsg (net/ipv4/raw.c:476) [ 720.367170][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 720.367416][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 720.367692][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 720.367969][ C2] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 720.368210][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 720.368477][ C2] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 720.368745][ C2] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 720.369030][ C2] __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 720.369299][ C2] ? __pfx___sys_sendto (net/socket.c:2161) [ 720.369572][ C2] ? do_user_addr_fault (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/mm.h:686 arch/x86/mm/fault.c:1366) [ 720.369887][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 720.370127][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 720.370392][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 720.370668][ C2] ? __up_read (./arch/x86/include/asm/atomic64_64.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2735 ./include/linux/atomic/atomic-long.h:184 ./include/linux/atomic/atomic-instrumented.h:3289 kernel/locking/rwsem.c:1347) [ 720.370941][ C2] ? __pfx___up_read (kernel/locking/rwsem.c:1339) [ 720.371201][ C2] ? do_user_addr_fault (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:783 ./include/linux/mm.h:688 arch/x86/mm/fault.c:1366) [ 720.371493][ C2] __x64_sys_sendto (net/socket.c:2199) [ 720.371745][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 720.372096][ C2] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 720.372343][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 720.372662][ C2] RIP: 0033:0x7fd52138b85a [ 720.372896][ C2] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 720.373917][ C2] RSP: 002b:00007ffdf5776aa8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 720.374348][ C2] RAX: ffffffffffffffda RBX: 0000000000001194 RCX: 00007fd52138b85a [ 720.374760][ C2] RDX: 000000000000119c RSI: 0000000001f68340 RDI: 0000000000000005 [ 720.375181][ C2] RBP: 00007ffdf5776b00 R08: 00000000004185e0 R09: 0000000000000010 [ 720.375596][ C2] R10: 0000000000000000 R11: 0000000000000246 R12: 00000000000011b0 Finger prints: dump_stack_lvl:__ubsan_handle_load_invalid_value:deliver_clone:br_handle_frame_finish dump_stack_lvl:__ubsan_handle_load_invalid_value:__dev_forward_skb2:veth_xmit dump_stack_lvl:__ubsan_handle_load_invalid_value:ip_rcv:__netif_receive_skb_one_core dump_stack_lvl:__ubsan_handle_load_invalid_value:ipv6_rcv:__netif_receive_skb_one_core