[ 13.481447][ T1] loop: module loaded [ 13.496487][ T1] scsi host0: ata_piix [ 13.512159][ T1] scsi host1: ata_piix [ 13.513751][ T1] ata1: PATA max MWDMA2 cmd 0x1f0 ctl 0x3f6 bmdma 0xc080 irq 14 lpm-pol 0 [ 13.514015][ T1] ata2: PATA max MWDMA2 cmd 0x170 ctl 0x376 bmdma 0xc088 irq 15 lpm-pol 0 [ 13.526504][ T1] tun: Universal TUN/TAP device driver, 1.6 [ 13.528710][ T1] i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 [ 13.530715][ T1] serio: i8042 KBD port at 0x60,0x64 irq 1 [ 13.531030][ T1] serio: i8042 AUX port at 0x60,0x64 irq 12 [ 13.535224][ T1] rtc_cmos 00:04: RTC can wake from S4 [ 13.538926][ T49] input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input1 [ 13.542962][ T1] rtc_cmos 00:04: registered as rtc0 [ 13.543307][ T1] rtc_cmos 00:04: setting system clock to 2024-03-22T00:17:49 UTC (1711066669) [ 13.544580][ T1] rtc_cmos 00:04: alarms up to one day, y3k, 242 bytes nvram, hpet irqs [ 13.547883][ T49] input: ImExPS/2 Generic Explorer Mouse as /devices/platform/i8042/serio1/input/input3 [ 13.550884][ T1] i6300ESB timer 0000:00:03.0: initialized. heartbeat=30 sec (nowayout=0) [ 13.553159][ T1] device-mapper: ioctl: 4.48.0-ioctl (2023-03-01) initialised: dm-devel@lists.linux.dev [ 13.583020][ T1] netem: version 1.3 [ 13.583930][ T1] ipip: IPv4 and MPLS over IPv4 tunneling driver [ 13.588594][ T1] IPv4 over IPsec tunneling driver [ 13.593778][ T1] NET: Registered PF_INET6 protocol family [ 13.602834][ T1] Segment Routing with IPv6 [ 13.603421][ T1] In-situ OAM (IOAM) with IPv6 [ 13.608263][ T1] sit: IPv6, IPv4 and MPLS over IPv4 tunneling driver [ 13.616055][ T1] NET: Registered PF_PACKET protocol family [ 13.617084][ T1] 8021q: 802.1Q VLAN Support v1.8 [ 13.617406][ T1] 9pnet: Installing 9P2000 support [ 13.620873][ T1] Key type dns_resolver registered [ 13.626393][ T1] IPI shorthand broadcast: enabled [ 13.673366][ T65] ata2: found unknown device (class 0) [ 13.674416][ T65] ata2.00: ATAPI: QEMU DVD-ROM, 2.5+, max UDMA/100 [ 13.678659][ T67] scsi 1:0:0:0: CD-ROM QEMU QEMU DVD-ROM 2.5+ PQ: 0 ANSI: 5 [ 13.703727][ T67] scsi 1:0:0:0: Attached scsi generic sg0 type 5 [ 13.914657][ T1] sched_clock: Marking stable (13904005537, 10096836)->(13928869202, -14766829) [ 13.916233][ T1] Timer migration: 1 hierarchy levels; 8 children per group; 1 crossnode level [ 13.920239][ T1] registered taskstats version 1 [ 13.924281][ T1] Loading compiled-in X.509 certificates [ 14.036804][ T1] kmemleak: Kernel memory leak detector initialized (mem pool available: 14341) [ 14.036814][ T76] kmemleak: Automatic memory scanning thread started [ 14.037164][ T1] page_owner is disabled [ 14.038756][ T1] PM: Magic number: 0:351:254 [ 14.039030][ T1] printk: legacy console [netcon0] enabled [ 14.039280][ T1] netconsole: network logging started [ 14.040567][ T1] ALSA device list: [ 14.040683][ T1] No soundcards found. [ 14.042037][ T1] md: Skipping autodetection of RAID arrays. (raid=autodetect will force) [ 14.042856][ T1] 9pnet_virtio: no channels available for device [ 14.047049][ T1] ================================================================== [ 14.047299][ T1] BUG: KASAN: slab-use-after-free in v9fs_stat2inode_dotl+0x9d6/0xb80 [ 14.047532][ T1] Read of size 8 at addr ffff888004455388 by task swapper/0/1 [ 14.047762][ T1] [ 14.047841][ T1] CPU: 2 PID: 1 Comm: swapper/0 Not tainted 6.8.0-virtme #1 [ 14.048076][ T1] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 14.048418][ T1] Call Trace: [ 14.048536][ T1] [ 14.048618][ T1] dump_stack_lvl+0x82/0xd0 [ 14.048776][ T1] print_address_description.constprop.0+0x2c/0x3b0 [ 14.048972][ T1] ? v9fs_stat2inode_dotl+0x9d6/0xb80 [ 14.049132][ T1] print_report+0xb4/0x270 [ 14.049289][ T1] ? kasan_addr_to_slab+0x4e/0x90 [ 14.049444][ T1] kasan_report+0xbd/0xf0 [ 14.049561][ T1] ? v9fs_stat2inode_dotl+0x9d6/0xb80 [ 14.049718][ T1] v9fs_stat2inode_dotl+0x9d6/0xb80 [ 14.049872][ T1] v9fs_fid_iget_dotl+0x18c/0x210 [ 14.050026][ T1] v9fs_mount+0x3fe/0x7d0 [ 14.050144][ T1] ? __pfx_v9fs_mount+0x10/0x10 [ 14.050301][ T1] ? vfs_parse_fs_string+0xdb/0x130 [ 14.050459][ T1] ? __pfx_vfs_parse_fs_string+0x10/0x10 [ 14.050612][ T1] ? kasan_save_track+0x14/0x30 [ 14.050766][ T1] ? __pfx_v9fs_mount+0x10/0x10 [ 14.050919][ T1] legacy_get_tree+0x107/0x200 [ 14.051074][ T1] ? alloc_fs_context+0x4b6/0x860 [ 14.051230][ T1] vfs_get_tree+0x8a/0x2e0 [ 14.051389][ T1] do_new_mount+0x27d/0x5e0 [ 14.051547][ T1] ? __pfx_do_new_mount+0x10/0x10 [ 14.051701][ T1] ? __pfx___debug_check_no_obj_freed+0x10/0x10 [ 14.051896][ T1] ? __virt_addr_valid+0x227/0x420 [ 14.052069][ T1] path_mount+0x271/0x14f0 [ 14.052230][ T1] ? __pfx_path_mount+0x10/0x10 [ 14.052383][ T1] ? kmem_cache_free+0xd7/0x220 [ 14.052537][ T1] ? kern_path+0x3d/0x50 [ 14.052657][ T1] init_mount+0x9d/0xf0 [ 14.052775][ T1] ? __pfx_init_mount+0x10/0x10 [ 14.052929][ T1] do_mount_root+0xbc/0x330 [ 14.053087][ T1] mount_root_generic+0x22c/0x470 [ 14.053246][ T1] ? __pfx_mount_root_generic+0x10/0x10 [ 14.053401][ T1] ? mount_root+0x25b/0x2f0 [ 14.053553][ T1] prepare_namespace+0xa5/0x2d0 [ 14.053706][ T1] ? __pfx_prepare_namespace+0x10/0x10 [ 14.053858][ T1] ? __pfx_kernel_init+0x10/0x10 [ 14.054010][ T1] kernel_init+0x20/0x200 [ 14.054129][ T1] ? __pfx_kernel_init+0x10/0x10 [ 14.054282][ T1] ret_from_fork+0x31/0x70 [ 14.054442][ T1] ? __pfx_kernel_init+0x10/0x10 [ 14.054594][ T1] ret_from_fork_asm+0x1a/0x30 [ 14.054753][ T1] [ 14.054870][ T1] [ 14.054950][ T1] Allocated by task 1: [ 14.055070][ T1] kasan_save_stack+0x24/0x50 [ 14.055228][ T1] kasan_save_track+0x14/0x30 [ 14.055380][ T1] __kasan_kmalloc+0x7f/0x90 [ 14.055533][ T1] p9_client_getattr_dotl+0x4c/0x1a0 [ 14.055687][ T1] v9fs_fid_iget_dotl+0xca/0x210 [ 14.055844][ T1] v9fs_mount+0x3fe/0x7d0 [ 14.055961][ T1] legacy_get_tree+0x107/0x200 [ 14.056116][ T1] vfs_get_tree+0x8a/0x2e0 [ 14.056271][ T1] do_new_mount+0x27d/0x5e0 [ 14.056424][ T1] path_mount+0x271/0x14f0 [ 14.056576][ T1] init_mount+0x9d/0xf0 [ 14.056691][ T1] do_mount_root+0xbc/0x330 [ 14.056840][ T1] mount_root_generic+0x22c/0x470 [ 14.056993][ T1] prepare_namespace+0xa5/0x2d0 [ 14.057150][ T1] kernel_init+0x20/0x200 [ 14.057263][ T1] ret_from_fork+0x31/0x70 [ 14.057414][ T1] ret_from_fork_asm+0x1a/0x30 [ 14.057567][ T1] [ 14.057643][ T1] Freed by task 1: [ 14.057758][ T1] kasan_save_stack+0x24/0x50 [ 14.057913][ T1] kasan_save_track+0x14/0x30 [ 14.058067][ T1] kasan_save_free_info+0x3b/0x60 [ 14.058219][ T1] __kasan_slab_free+0xf4/0x180 [ 14.058373][ T1] kfree+0xd3/0x230 [ 14.058492][ T1] v9fs_fid_iget_dotl+0x15e/0x210 [ 14.058644][ T1] v9fs_mount+0x3fe/0x7d0 [ 14.058759][ T1] legacy_get_tree+0x107/0x200 [ 14.058914][ T1] vfs_get_tree+0x8a/0x2e0 [ 14.059065][ T1] do_new_mount+0x27d/0x5e0 [ 14.059219][ T1] path_mount+0x271/0x14f0 [ 14.059372][ T1] init_mount+0x9d/0xf0 [ 14.059488][ T1] do_mount_root+0xbc/0x330 [ 14.059640][ T1] mount_root_generic+0x22c/0x470 [ 14.059795][ T1] prepare_namespace+0xa5/0x2d0 [ 14.059950][ T1] kernel_init+0x20/0x200 [ 14.060065][ T1] ret_from_fork+0x31/0x70 [ 14.060220][ T1] ret_from_fork_asm+0x1a/0x30 [ 14.060372][ T1] [ 14.060450][ T1] The buggy address belongs to the object at ffff888004455388 [ 14.060450][ T1] which belongs to the cache kmalloc-192 of size 192 [ 14.060820][ T1] The buggy address is located 0 bytes inside of [ 14.060820][ T1] freed 192-byte region [ffff888004455388, ffff888004455448) [ 14.061193][ T1] [ 14.061271][ T1] The buggy address belongs to the physical page: [ 14.061459][ T1] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0xffff8880044554c0 pfn:0x4454 [ 14.061767][ T1] head: order:1 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 14.061998][ T1] flags: 0x80000000000a40(workingset|slab|head|node=0|zone=1) [ 14.062251][ T1] page_type: 0xffffffff() [ 14.062372][ T1] raw: 0080000000000a40 ffff888001042c40 ffff888001040a88 ffff888001040a88 [ 14.062646][ T1] raw: ffff8880044554c0 00000000001a0011 00000001ffffffff 0000000000000000 [ 14.062917][ T1] head: 0080000000000a40 ffff888001042c40 ffff888001040a88 ffff888001040a88 [ 14.063190][ T1] head: ffff8880044554c0 00000000001a0011 00000001ffffffff 0000000000000000 [ 14.063464][ T1] head: 0080000000000001 ffffea0000111501 dead000000000122 00000000ffffffff [ 14.063733][ T1] head: 0000000200000000 0000000000000000 00000000ffffffff 0000000000000000 [ 14.063999][ T1] page dumped because: kasan: bad access detected [ 14.064188][ T1] [ 14.064265][ T1] Memory state around the buggy address: [ 14.064414][ T1] ffff888004455280: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 14.064640][ T1] ffff888004455300: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 14.064866][ T1] >ffff888004455380: fc fa fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 14.065087][ T1] ^ [ 14.065201][ T1] ffff888004455400: fb fb fb fb fb fb fb fb fb fc fc fc fc fc fc fc [ 14.065424][ T1] ffff888004455480: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 14.065655][ T1] ================================================================== [ 14.065964][ T1] Disabling lock debugging due to kernel taint [ 14.078466][ T1] VFS: Mounted root (9p filesystem) readonly on device 0:20. [ 14.079670][ T1] devtmpfs: mounted [ 14.109676][ T1] Freeing unused kernel image (initmem) memory: 6660K [ 14.110153][ T1] Write protecting the kernel read-only data: 61440k [ 14.111182][ T1] Freeing unused kernel image (rodata/data gap) memory: 588K [ 14.111486][ T1] Run /home/virtme/virtme-ng/virtme/guest/virtme-init as init process [ 19.761205][ T171] request_module: modprobe binfmt-0000 cannot be processed, kmod busy with 50 threads for more than 5 seconds now [ 19.761923][ T171] kworker/u20:11 (171) used greatest stack depth: 27376 bytes left [ 19.795150][ T107] kworker/u19:4 (107) used greatest stack depth: 27280 bytes left [ 19.796119][ T103] kworker/u18:3 (103) used greatest stack depth: 27272 bytes left [ 19.808520][ T90] kworker/u17:2 (90) used greatest stack depth: 27080 bytes left [ 19.814409][ T1] Kernel panic - not syncing: Requested init /home/virtme/virtme-ng/virtme/guest/virtme-init failed (error -8). [ 19.814707][ T1] CPU: 1 PID: 1 Comm: swapper/0 Tainted: G B 6.8.0-virtme #1 [ 19.814945][ T1] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 19.815252][ T1] Call Trace: [ 19.815355][ T1] [ 19.815428][ T1] panic+0x506/0x5b0 [ 19.815543][ T1] ? __pfx_panic+0x10/0x10 [ 19.815680][ T1] ? kmem_cache_free+0xd7/0x220 [ 19.815815][ T1] ? kernel_execve+0x32a/0x460 [ 19.815957][ T1] kernel_init+0xee/0x200 [ 19.816061][ T1] ? __pfx_kernel_init+0x10/0x10 [ 19.816193][ T1] ret_from_fork+0x31/0x70 [ 19.816332][ T1] ? __pfx_kernel_init+0x10/0x10 [ 19.816465][ T1] ret_from_fork_asm+0x1a/0x30 [ 19.816608][ T1] [ 19.816791][ T1] Kernel Offset: 0x14200000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 19.817105][ T1] ---[ end Kernel panic - not syncing: Requested init /home/virtme/virtme-ng/virtme/guest/virtme-init failed (error -8). ]--- WAIT TIMEOUT stderr