====================================== | [ 215.857010][ T1724] Mirror/redirect action on | [ 221.304381][ T1743] ------------[ cut here ]------------ | [ 221.304789][ T1743] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 221.305154][ T1743] load of value 107 is not a valid value for type '_Bool' [ 221.305931][ T1743] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 221.306578][ T1743] Call Trace: [ 221.306761][ T1743] [ 221.306921][ T1743] dump_stack_lvl (lib/dump_stack.c:107) [ 221.307171][ T1743] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 221.307505][ T1743] skb_scrub_packet.cold (./include/linux/skbuff.h:4267 net/core/skbuff.c:6030) [ 221.307782][ T1743] __dev_forward_skb2 (./include/linux/netdevice.h:4115 net/core/dev.c:2135) [ 221.308056][ T1743] veth_xmit (drivers/net/veth.c:319 drivers/net/veth.c:374) [ 221.308291][ T1743] dev_hard_start_xmit (./include/linux/netdevice.h:4991 ./include/linux/netdevice.h:5005 net/core/dev.c:3530 net/core/dev.c:3546) [ 221.308573][ T1743] __dev_queue_xmit (./include/linux/netdevice.h:3369 net/core/dev.c:4338) [ 221.308838][ T1743] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4292 kernel/locking/lockdep.c:4359) [ 221.309197][ T1743] ? __create_object+0x5e/ DETECTED CRASH, lowering timeout 0xb0 [ 221.309456][ T1743] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 221.309739][ T1743] ? kmem_cache_alloc (mm/slub.c:3873) [ 221.310012][ T1743] ? __copy_skb_header (./arch/x86/include/asm/atomic.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2393 ./include/linux/atomic/atomic-instrumented.h:1468 ./include/linux/rcuref.h:67 ./include/net/dst.h:238 ./include/net/dst.h:252 ./include/net/dst.h:285 ./include/net/dst.h:290 net/core/skbuff.c:1531) [ 221.310286][ T1743] ? __skb_clone (./arch/x86/include/asm/atomic.h:53 (discriminator 4) ./include/linux/atomic/atomic-arch-fallback.h:992 (discriminator 4) ./include/linux/atomic/atomic-instrumented.h:436 (discriminator 4) net/core/skbuff.c:1602 (discriminator 4)) [ 221.310538][ T1743] tcf_mirred_to_dev (net/sched/act_mirred.c:241 net/sched/act_mirred.c:236 net/sched/act_mirred.c:315) act_mirred [ 221.310875][ T1743] tcf_mirred_act (net/sched/act_mirred.c:453 (discriminator 2)) act_mirred [ 221.311193][ T1743] tcf_action_exec.part.0 (./include/net/tc_wrapper.h:130 net/sched/act_api.c:1100) [ 221.311489][ T1743] basic_classify (net/sched/cls_basic.c:55) cls_basic [ 221.311799][ T1743] __tcf_classify.constprop.0 (./include/net/tc_wrapper.h:197 net/sched/cls_api.c:1736) [ 221.312112][ T1743] tcf_classify (net/sched/cls_api.c:1781) [ 221.312344][ T1743] ? __pfx_tcf_classify (net/sched/cls_api.c:1781) [ 221.312611][ T1743] ? check_prev_add (kernel/locking/lockdep.c:1617 kernel/locking/lockdep.c:1622 kernel/locking/lockdep.c:3153) [ 221.312874][ T1743] fq_codel_enqueue (net/sched/sch_fq_codel.c:95 net/sched/sch_fq_codel.c:194) sch_fq_codel [ 221.313214][ T1743] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 221.313491][ T1743] ? find_held_lock (kernel/locking/lockdep.c:5244) [ 221.313748][ T1743] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.313990][ T1743] ? __pfx_fq_codel_enqueue (net/sched/sch_fq_codel.c:186) sch_fq_codel [ 221.314343][ T1743] ? __pfx___lock_acquired (kernel/locking/lockdep.c:5959) [ 221.314623][ T1743] ? __pfx_do_raw_spin_trylock (kernel/locking/spinlock_debug.c:122) [ 221.314928][ T1743] dev_qdisc_enqueue (net/core/dev.c:3725) [ 221.315191][ T1743] __dev_xmit_skb (./include/net/sch_generic.h:194 net/core/dev.c:3817) [ 221.315441][ T1743] ? lock_sync (kernel/locking/lockdep.c:5806) [ 221.315680][ T1743] ? __pfx___dev_xmit_skb (net/core/dev.c:3734) [ 221.315957][ T1743] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 221.316205][ T1743] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:802 net/core/dev.c:4262) [ 221.316490][ T1743] __dev_queue_xmit (net/core/dev.c:4303) [ 221.316759][ T1743] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 221.317015][ T1743] ? eth_header (net/ethernet/eth.c:100) [ 221.317259][ T1743] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 221.317544][ T1743] ? neigh_resolve_output (./include/linux/netdevice.h:3226 net/core/neighbour.c:1558 net/core/neighbour.c:1543) [ 221.317843][ T1743] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 221.318114][ T1743] ? __pfx_get_random_u32 (drivers/char/random.c:532) [ 221.318392][ T1743] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 221.318657][ T1743] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 221.318949][ T1743] ? __ip_finish_output (./include/linux/skbuff.h:1627 ./include/linux/skbuff.h:4943 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 221.319229][ T1743] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 221.319454][ T1743] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 221.319717][ T1743] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 221.319968][ T1743] ? __ip_make_skb (net/ipv4/ip_output.c:1377 net/ipv4/ip_output.c:1486) [ 221.320232][ T1743] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 221.320496][ T1743] ? ip_append_data (net/ipv4/ip_output.c:1366 net/ipv4/ip_output.c:1345) [ 221.320757][ T1743] ip_push_pending_frames (./include/net/dst.h:450 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1495 net/ipv4/ip_output.c:1515) [ 221.321044][ T1743] raw_sendmsg (net/ipv4/raw.c:648) [ 221.321298][ T1743] ? __pfx_raw_sendmsg (net/ipv4/raw.c:476) [ 221.321582][ T1743] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.321823][ T1743] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 221.322083][ T1743] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 221.322358][ T1743] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 221.322593][ T1743] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 221.322842][ T1743] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 221.323096][ T1743] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 221.323357][ T1743] __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 221.323604][ T1743] ? __pfx___sys_sendto (net/socket.c:2161) [ 221.323871][ T1743] ? do_user_addr_fault (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/mm.h:686 arch/x86/mm/fault.c:1366) [ 221.324163][ T1743] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.324407][ T1743] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 221.324669][ T1743] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 221.324948][ T1743] ? __up_read (./arch/x86/include/asm/atomic64_64.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2735 ./include/linux/atomic/atomic-long.h:184 ./include/linux/atomic/atomic-instrumented.h:3289 kernel/locking/rwsem.c:1347) [ 221.325187][ T1743] ? __pfx___up_read (kernel/locking/rwsem.c:1339) [ 221.325447][ T1743] ? do_user_addr_fault (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:783 ./include/linux/mm.h:688 arch/x86/mm/fault.c:1366) [ 221.325731][ T1743] __x64_sys_sendto (net/socket.c:2199) [ 221.325987][ T1743] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 221.326333][ T1743] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 221.326588][ T1743] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 221.326901][ T1743] RIP: 0033:0x7fa3a31be85a [ 221.327138][ T1743] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 221.328133][ T1743] RSP: 002b:00007ffd61b1dbe8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 221.328571][ T1743] RAX: ffffffffffffffda RBX: 0000000000000038 RCX: 00007fa3a31be85a [ 221.328982][ T1743] RDX: 0000000000000040 RSI: 0000000001c49340 RDI: 0000000000000005 [ 221.329392][ T1743] RBP: 00007ffd61b1dc40 R08: 00000000004185e0 R09: 0000000000000010 [ 221.329803][ T1743] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000054 [ 221.330213][ T1743] R13: 000000000040305a R14: 0000000000415dd0 R15: 00007fa3a32de000 | [ 221.330829][ T1743] ---[ end trace ]--- | [ 221.331299][ C2] ------------[ cut here ]------------ | [ 221.331647][ C2] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 221.332013][ C2] load of value 107 is not a valid value for type '_Bool' [ 221.332779][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 221.333409][ C2] Call Trace: [ 221.333587][ C2] [ 221.333739][ C2] dump_stack_lvl (lib/dump_stack.c:107) [ 221.333984][ C2] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 221.334308][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 221.334574][ C2] tcf_mirred_to_dev.cold (net/sched/act_mirred.c:468) act_mirred [ 221.334917][ C2] tcf_mirred_act (net/sched/act_mirred.c:453 (discriminator 2)) act_mirred [ 221.335230][ C2] tcf_action_exec.part.0 (./include/net/tc_wrapper.h:130 net/sched/act_api.c:1100) [ 221.335522][ C2] basic_classify (net/sched/cls_basic.c:55) cls_basic [ 221.335830][ C2] __tcf_classify.constprop.0 (./include/net/tc_wrapper.h:197 net/sched/cls_api.c:1736) [ 221.336139][ C2] tcf_classify (net/sched/cls_api.c:1781) [ 221.336371][ C2] ? __pfx_tcf_classify (net/sched/cls_api.c:1781) [ 221.336645][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.336886][ C2] tc_run (net/core/dev.c:3923) [ 221.337106][ C2] ? __pfx_tc_run (net/core/dev.c:3904) [ 221.337343][ C2] ? validate_chain (./include/linux/hash.h:78 kernel/locking/lockdep.c:3759 kernel/locking/lockdep.c:3782 kernel/locking/lockdep.c:3837) [ 221.337610][ C2] __netif_receive_skb_core.constprop.0 (net/core/dev.c:3995 net/core/dev.c:5414) [ 221.337974][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 221.338238][ C2] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5341) [ 221.338616][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 221.338888][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 221.339154][ C2] __netif_receive_skb_one_core (net/core/dev.c:5553) [ 221.339461][ C2] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5547) [ 221.339802][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 221.340046][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 221.340312][ C2] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5997) [ 221.340569][ C2] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 221.340856][ C2] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 221.341113][ C2] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 221.341385][ C2] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 221.341648][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 221.341899][ C2] ? hrtimer_interrupt (kernel/time/hrtimer.c:1828) [ 221.342176][ C2] __do_softirq (kernel/softirq.c:553) [ 221.342421][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 221.342692][ C2] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 221.342914][ C2] [ 221.343069][ C2] [ 221.343227][ C2] __local_bh_enable_ip (kernel/softirq.c:381) [ 221.343497][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 221.343765][ C2] __dev_queue_xmit (net/core/dev.c:4365) [ 221.344030][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 221.344283][ C2] ? eth_header (net/ethernet/eth.c:100) [ 221.344527][ C2] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 221.344807][ C2] ? neigh_resolve_output (./include/linux/netdevice.h:3226 net/core/neighbour.c:1558 net/core/neighbour.c:1543) [ 221.345103][ C2] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 221.345370][ C2] ? __pfx_get_random_u32 (drivers/char/random.c:532) [ 221.345647][ C2] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 221.345910][ C2] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 221.346199][ C2] ? __ip_finish_output (./include/linux/skbuff.h:1627 ./include/linux/skbuff.h:4943 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 221.346483][ C2] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 221.346707][ C2] ? __ip_local_out (net/ipv4/ip_output.c:96 net/ipv4/ip_output.c:107) [ 221.346963][ C2] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 221.347214][ C2] ? __ip_make_skb (net/ipv4/ip_output.c:1377 net/ipv4/ip_output.c:1486) [ 221.347475][ C2] ? __pfx_raw_getfrag (net/ipv4/raw.c:446) [ 221.347738][ C2] ? ip_append_data (net/ipv4/ip_output.c:1366 net/ipv4/ip_output.c:1345) [ 221.347996][ C2] ip_push_pending_frames (./include/net/dst.h:450 net/ipv4/ip_output.c:129 net/ipv4/ip_output.c:1495 net/ipv4/ip_output.c:1515) [ 221.348282][ C2] raw_sendmsg (net/ipv4/raw.c:648) [ 221.348532][ C2] ? __pfx_raw_sendmsg (net/ipv4/raw.c:476) [ 221.348812][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.349050][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 221.349309][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 221.349582][ C2] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 221.349815][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 221.350060][ C2] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 221.350311][ C2] ? __might_fault (mm/memory.c:6060 mm/memory.c:6053) [ 221.350571][ C2] __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 221.350814][ C2] ? __pfx___sys_sendto (net/socket.c:2161) [ 221.351078][ C2] ? do_user_addr_fault (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/mm.h:686 arch/x86/mm/fault.c:1366) [ 221.351365][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 221.351603][ C2] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 221.351862][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 221.352133][ C2] ? __up_read (./arch/x86/include/asm/atomic64_64.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2735 ./include/linux/atomic/atomic-long.h:184 ./include/linux/atomic/atomic-instrumented.h:3289 kernel/locking/rwsem.c:1347) [ 221.352373][ C2] ? __pfx___up_read (kernel/locking/rwsem.c:1339) [ 221.352630][ C2] ? do_user_addr_fault (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:783 ./include/linux/mm.h:688 arch/x86/mm/fault.c:1366) [ 221.352911][ C2] __x64_sys_sendto (net/socket.c:2199) [ 221.353165][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 221.353511][ C2] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 221.353752][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 221.354062][ C2] RIP: 0033:0x7fa3a31be85a [ 221.354298][ C2] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 221.355293][ C2] RSP: 002b:00007ffd61b1dbe8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 221.355728][ C2] RAX: ffffffffffffffda RBX: 0000000000000038 RCX: 00007fa3a31be85a [ 221.356141][ C2] RDX: 0000000000000040 RSI: 0000000001c49340 RDI: 0000000000000005 [ 221.356558][ C2] RBP: 00007ffd61b1dc40 R08: 00000000004185e0 R09: 0000000000000010 [ 221.356968][ C2] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000054 Finger prints: dump_stack_lvl:__ubsan_handle_load_invalid_value:__dev_forward_skb2:veth_xmit dump_stack_lvl:__ubsan_handle_load_invalid_value:tcf_mirred_act:basic_classify