====================================== | [ 904.466282][ T1971] br0: port 2(veth-tap) entered forwarding state | [ 904.471195][ C3] ------------[ cut here ]------------ | [ 904.471536][ C3] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 904.471914][ C3] load of value 107 is not a valid value for type '_Bool' [ 904.472720][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 904.473332][ C3] Workqueue: mld mld_ifc_work [ 904.473580][ C3] Call Trace: [ 904.473754][ C3] [ 904.473901][ C3] dump_stack_lvl (lib/dump_stack.c:107) [ 904.474136][ C3] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 904.474487][ C3] br_forward_finish.cold (./include/linux/skbuff.h:4267 net/bridge/br_forward.c:65) [ 904.474750][ C3] deliver_clone (net/bridge/br_forward.c:132) [ 904.474978][ C3] br_handle_frame_finish (net/bridge/br_input.c:215) [ 904.475304][ C3] ? __ DETECTED CRASH, lowering timeout pfx_br_handle_frame_finish+0x10/0x10 [ 904.475700][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4292 kernel/locking/lockdep.c:4359) [ 904.476037][ C3] ? __debug_check_no_obj_freed (lib/debugobjects.c:1000) [ 904.476347][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 904.476580][ C3] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 904.476810][ C3] br_handle_frame (net/bridge/br_input.c:417) [ 904.477057][ C3] ? __pfx_br_handle_frame (net/bridge/br_input.c:321) [ 904.477336][ C3] __netif_receive_skb_core.constprop.0 (net/core/dev.c:5448) [ 904.477676][ C3] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 904.477903][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 904.478156][ C3] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5341) [ 904.478539][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 904.478803][ C3] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 904.479057][ C3] __netif_receive_skb_one_core (net/core/dev.c:5553) [ 904.479373][ C3] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5547) [ 904.479699][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 904.479935][ C3] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 904.480201][ C3] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5997) [ 904.480450][ C3] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 904.480726][ C3] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 904.480972][ C3] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 904.481243][ C3] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 904.481495][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 904.481743][ C3] __do_softirq (kernel/softirq.c:553) [ 904.481980][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 904.482265][ C3] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 904.482476][ C3] [ 904.482628][ C3] [ 904.482778][ C3] __local_bh_enable_ip (kernel/softirq.c:381) [ 904.483036][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 904.483323][ C3] __dev_queue_xmit (net/core/dev.c:4365) [ 904.483579][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 904.483823][ C3] ? eth_header (net/ethernet/eth.c:100) [ 904.484057][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 904.484338][ C3] ? neigh_resolve_output (./include/linux/netdevice.h:3226 net/core/neighbour.c:1558 net/core/neighbour.c:1543) [ 904.484622][ C3] ip6_finish_output2 (./include/net/neighbour.h:542 net/ipv6/ip6_output.c:137) [ 904.484886][ C3] ip6_finish_output (net/ipv6/ip6_output.c:211 net/ipv6/ip6_output.c:222) [ 904.485144][ C3] ip6_output (./include/linux/netfilter.h:303 net/ipv6/ip6_output.c:243) [ 904.485373][ C3] ? __pfx_ip6_output (net/ipv6/ip6_output.c:230) [ 904.485620][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 904.485885][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 904.486117][ C3] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 904.486392][ C3] NF_HOOK.constprop.0 (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/netfilter.h:238 ./include/linux/netfilter.h:312) [ 904.486649][ C3] ? __pfx_NF_HOOK.constprop.0 (./include/linux/netfilter.h:308) [ 904.486930][ C3] ? __pfx_xfrm_lookup_with_ifid (net/xfrm/xfrm_policy.c:3133) [ 904.487241][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 904.487572][ C3] ? icmp6_dst_alloc (net/ipv6/route.c:3292) [ 904.487822][ C3] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 904.488093][ C3] mld_sendpack (net/ipv6/mcast.c:1822) [ 904.488339][ C3] ? __pfx_mld_sendpack (net/ipv6/mcast.c:1779) [ 904.488603][ C3] ? mld_send_cr (net/ipv6/mcast.c:2096 (discriminator 11)) [ 904.488843][ C3] mld_ifc_work (net/ipv6/mcast.c:2652) [ 904.489072][ C3] process_one_work (kernel/workqueue.c:2633) [ 904.489348][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 904.489580][ C3] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 904.489859][ C3] ? assign_work (kernel/workqueue.c:1101) [ 904.490099][ C3] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 904.490362][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 904.490700][ C3] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 904.490962][ C3] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 904.491238][ C3] kthread (kernel/kthread.c:388) [ 904.491445][ C3] ? __pfx_kthread (kernel/kthread.c:341) [ 904.491682][ C3] ret_from_fork (arch/x86/kernel/process.c:147) [ 904.491906][ C3] ? __pfx_kthread (kernel/kthread.c:341) [ 904.492140][ C3] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 905.849701][ T1735] br0: port 2(veth-tap) entered forwarding state | [ 906.121883][ C3] ------------[ cut here ]------------ | [ 906.122441][ C3] UBSAN: invalid-load in ./include/linux/skbuff.h:4267:9 | [ 906.123022][ C3] load of value 107 is not a valid value for type '_Bool' [ 906.124234][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 906.125166][ C3] Workqueue: ipv6_addrconf addrconf_dad_work [ 906.125641][ C3] Call Trace: [ 906.125896][ C3] [ 906.126131][ C3] dump_stack_lvl (lib/dump_stack.c:107) [ 906.126513][ C3] __ubsan_handle_load_invalid_value (lib/ubsan.c:218 lib/ubsan.c:419) [ 906.127004][ C3] skb_scrub_packet.cold (./include/linux/skbuff.h:4267 net/core/skbuff.c:6030) [ 906.127442][ C3] __dev_forward_skb2 (./include/linux/netdevice.h:4115 net/core/dev.c:2135) [ 906.127855][ C3] veth_xmit (drivers/net/veth.c:319 drivers/net/veth.c:374) [ 906.128211][ C3] dev_hard_start_xmit (./include/linux/netdevice.h:4991 ./include/linux/netdevice.h:5005 net/core/dev.c:3530 net/core/dev.c:3546) [ 906.128640][ C3] __dev_queue_xmit (./include/linux/netdevice.h:3369 net/core/dev.c:4338) [ 906.129048][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 906.129427][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4292 kernel/locking/lockdep.c:4359) [ 906.129760][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 906.130051][ C3] ip_finish_output2 (./include/net/neighbour.h:540 net/ipv4/ip_output.c:235) [ 906.130319][ C3] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 906.130546][ C3] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 906.130942][ C3] ? __ip_finish_output (./include/linux/skbuff.h:1627 ./include/linux/skbuff.h:4943 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 906.131337][ C3] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 906.131572][ C3] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 906.131918][ C3] ? pskb_expand_head (./arch/x86/include/asm/atomic.h:28 ./include/linux/atomic/atomic-arch-fallback.h:503 ./include/linux/atomic/atomic-instrumented.h:68 net/core/skbuff.c:2297) [ 906.132279][ C3] ? ip_local_out (net/ipv4/ip_output.c:128) [ 906.132630][ C3] iptunnel_xmit (net/ipv4/ip_tunnel_core.c:84 (discriminator 4)) [ 906.132960][ C3] ? vxlan_build_skb.isra.0 (drivers/net/vxlan/vxlan_core.c:2185) vxlan [ 906.133500][ C3] vxlan_xmit_one (drivers/net/vxlan/vxlan_core.c:2486) vxlan [ 906.133973][ C3] ? stack_access_ok (arch/x86/kernel/unwind_orc.c:396) [ 906.134379][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 906.134841][ C3] ? __pfx_vxlan_xmit_one (drivers/net/vxlan/vxlan_core.c:2310) vxlan [ 906.135363][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 906.135803][ C3] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:802 net/core/dev.c:4262) [ 906.136251][ C3] ? vxlan_xmit (drivers/net/vxlan/vxlan_core.c:2762) vxlan [ 906.136702][ C3] vxlan_xmit (drivers/net/vxlan/vxlan_core.c:2762) vxlan [ 906.137164][ C3] dev_hard_start_xmit (./include/linux/netdevice.h:4991 ./include/linux/netdevice.h:5005 net/core/dev.c:3530 net/core/dev.c:3546) [ 906.137608][ C3] __dev_queue_xmit (./include/linux/netdevice.h:3369 net/core/dev.c:4338) [ 906.138032][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 906.138367][ C3] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 906.138644][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 906.138954][ C3] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 906.139270][ C3] br_dev_queue_push_xmit (net/bridge/br_forward.c:34) [ 906.139556][ C3] ? __pfx_br_dev_queue_push_xmit (net/bridge/br_forward.c:34) [ 906.139883][ C3] deliver_clone (net/bridge/br_forward.c:132) [ 906.140147][ C3] br_handle_frame_finish (net/bridge/br_input.c:215) [ 906.140439][ C3] ? __pfx_br_handle_frame_finish (net/bridge/br_input.c:75) [ 906.140754][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 906.140986][ C3] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 906.141306][ C3] br_handle_frame (net/bridge/br_input.c:417) [ 906.141708][ C3] ? __pfx_br_handle_frame (net/bridge/br_input.c:321) [ 906.142123][ C3] __netif_receive_skb_core.constprop.0 (net/core/dev.c:5448) [ 906.142483][ C3] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 906.142734][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5137) [ 906.143005][ C3] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5341) [ 906.143452][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 906.143727][ C3] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 906.144004][ C3] __netif_receive_skb_one_core (net/core/dev.c:5553) [ 906.144319][ C3] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5547) [ 906.144678][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 906.144914][ C3] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5995) [ 906.145175][ C3] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5997) [ 906.145433][ C3] __napi_poll.constprop.0 (net/core/dev.c:6625) [ 906.145732][ C3] net_rx_action (net/core/dev.c:6694 net/core/dev.c:6827) [ 906.145982][ C3] ? __pfx_net_rx_action (net/core/dev.c:6791) [ 906.146276][ C3] ? lockdep_unlock (kernel/locking/lockdep.c:152 kernel/locking/lockdep.c:148) [ 906.146548][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 906.146807][ C3] __do_softirq (kernel/softirq.c:553) [ 906.147059][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 906.147334][ C3] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 906.147564][ C3] [ 906.147714][ C3] [ 906.147902][ C3] __local_bh_enable_ip (kernel/softirq.c:381) [ 906.148186][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:308 ./include/linux/rcupdate.h:818 net/core/dev.c:4364) [ 906.148447][ C3] __dev_queue_xmit (net/core/dev.c:4365) [ 906.148717][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 906.148996][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 906.149348][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4246) [ 906.149620][ C3] ? neigh_hh_output (./include/linux/seqlock.h:74 ./include/linux/seqlock.h:772 ./include/net/neighbour.h:496) [ 906.149912][ C3] ip6_finish_output2 (./include/net/neighbour.h:540 net/ipv6/ip6_output.c:137) [ 906.150212][ C3] ip6_finish_output (net/ipv6/ip6_output.c:211 net/ipv6/ip6_output.c:222) [ 906.150485][ C3] ip6_output (./include/linux/netfilter.h:303 net/ipv6/ip6_output.c:243) [ 906.150709][ C3] ? __pfx_ip6_output (net/ipv6/ip6_output.c:230) [ 906.150961][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 906.151284][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 906.151535][ C3] ? __lock_release (kernel/locking/lockdep.c:353 kernel/locking/lockdep.c:5436) [ 906.151795][ C3] NF_HOOK.constprop.0 (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 ./include/linux/netfilter.h:238 ./include/linux/netfilter.h:312) [ 906.152089][ C3] ? __pfx_NF_HOOK.constprop.0 (./include/linux/netfilter.h:308) [ 906.152383][ C3] ? __pfx_xfrm_lookup_with_ifid (net/xfrm/xfrm_policy.c:3133) [ 906.152681][ C3] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 906.153011][ C3] ? icmp6_dst_alloc (net/ipv6/route.c:3292) [ 906.153270][ C3] ? __local_bh_enable_ip (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/softirq.c:386) [ 906.153544][ C3] mld_sendpack (net/ipv6/mcast.c:1822) [ 906.153777][ C3] ? ipv6_mc_dad_complete (net/ipv6/mcast.c:2242) [ 906.154047][ C3] ? __pfx_mld_sendpack (net/ipv6/mcast.c:1779) [ 906.154338][ C3] ipv6_mc_dad_complete (./include/linux/refcount.h:190 net/ipv6/mcast.c:2244) [ 906.154606][ C3] addrconf_dad_completed (net/ipv6/addrconf.c:4343) [ 906.154883][ C3] ? __pfx_addrconf_dad_completed (net/ipv6/addrconf.c:4309) [ 906.155195][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 906.155453][ C3] ? addrconf_dad_work (net/ipv6/addrconf.c:4270) [ 906.155711][ C3] addrconf_dad_work (net/ipv6/addrconf.c:4270) [ 906.155969][ C3] ? __pfx_addrconf_dad_work (net/ipv6/addrconf.c:4180) [ 906.156258][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 906.156495][ C3] ? process_one_work (kernel/workqueue.c:2609) [ 906.156780][ C3] process_one_work (kernel/workqueue.c:2633) [ 906.157058][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 906.157298][ C3] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 906.157613][ C3] ? assign_work (kernel/workqueue.c:1101) [ 906.157854][ C3] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 906.158111][ C3] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 906.158379][ C3] kthread (kernel/kthread.c:388) [ 906.158611][ C3] ? __pfx_kthread (kernel/kthread.c:341) [ 906.158862][ C3] ret_from_fork (arch/x86/kernel/process.c:147) [ 906.159108][ C3] ? __pfx_kthread (kernel/kthread.c:341) Finger prints: dump_stack_lvl:__ubsan_handle_load_invalid_value:deliver_clone:br_handle_frame_finish dump_stack_lvl:__ubsan_handle_load_invalid_value:__dev_forward_skb2:veth_xmit