[ 1317.298728][ T76] kmemleak: 602 new suspected memory leaks (see /sys/kernel/debug/kmemleak) [ 1353.494264][ C3] ================================================================== [ 1353.494598][ C3] BUG: KASAN: null-ptr-deref in sock_def_write_space_wfree+0x210/0x360 [ 1353.494823][ C3] Read of size 8 at addr 0000000000000008 by task ksoftirqd/3/33 [ 1353.495044][ C3] [ 1353.495130][ C3] CPU: 3 PID: 33 Comm: ksoftirqd/3 Not tainted 6.9.0-rc2-virtme #1 [ 1353.495349][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 1353.495681][ C3] Call Trace: [ 1353.495794][ C3] [ 1353.495870][ C3] dump_stack_lvl+0x82/0xd0 [ 1353.496025][ C3] kasan_report+0xbd/0xf0 [ 1353.496139][ C3] ? sock_def_write_space_wfree+0x210/0x360 [ 1353.496320][ C3] kasan_check_range+0x39/0x1c0 [ 1353.496467][ C3] sock_def_write_space_wfree+0x210/0x360 [ 1353.496613][ C3] sock_wfree+0x25f/0x3e0 [ 1353.496730][ C3] skb_release_head_state+0x7a/0x1e0 [ 1353.496872][ C3] consume_skb+0x76/0x110 [ 1353.496980][ C3] skb_pp_cow_data+0x66b/0xad0 [ 1353.497125][ C3] ? __pfx_skb_pp_cow_data+0x10/0x10 [ 1353.497269][ C3] ? veth_xdp_rcv_skb+0x124/0x17f0 [ 1353.497412][ C3] veth_xdp_rcv_skb+0x322/0x17f0 [ 1353.497556][ C3] ? __pfx_veth_xdp_rcv_skb+0x10/0x10 [ 1353.497698][ C3] ? dev_gro_receive+0x1ea/0x1390 [ 1353.497840][ C3] ? trace_napi_gro_receive_exit+0xf3/0x160 [ 1353.498017][ C3] ? napi_gro_receive+0x533/0x780 [ 1353.498157][ C3] veth_xdp_rcv+0x2ff/0xa20 [ 1353.498299][ C3] ? stack_trace_save+0x94/0xd0 [ 1353.498443][ C3] ? __pfx_stack_trace_save+0x10/0x10 [ 1353.498588][ C3] ? __pfx_veth_xdp_rcv+0x10/0x10 [ 1353.498731][ C3] ? kasan_save_stack+0x34/0x50 [ 1353.498876][ C3] ? kasan_save_stack+0x24/0x50 [ 1353.499019][ C3] ? hlock_class+0x4e/0x130 [ 1353.499165][ C3] ? validate_chain+0x130/0x9b0 [ 1353.499306][ C3] veth_poll+0xff/0x620 [ 1353.499413][ C3] ? __pfx_validate_chain+0x10/0x10 [ 1353.499553][ C3] ? __pfx_veth_poll+0x10/0x10 [ 1353.499701][ C3] ? __lock_acquire+0xaf0/0x1570 [ 1353.499848][ C3] ? find_held_lock+0x2c/0x110 [ 1353.499991][ C3] ? __lock_release+0x103/0x460 [ 1353.500131][ C3] ? finish_task_switch.isra.0+0x20f/0x8c0 [ 1353.500310][ C3] ? __pfx___lock_release+0x10/0x10 [ 1353.500453][ C3] ? find_held_lock+0x2c/0x110 [ 1353.500596][ C3] __napi_poll.constprop.0+0xa2/0x460 [ 1353.500740][ C3] net_rx_action+0x49f/0xc00 [ 1353.500887][ C3] ? __schedule+0x6ea/0x1a20 [ 1353.501033][ C3] ? __pfx_net_rx_action+0x10/0x10 [ 1353.501175][ C3] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 1353.501320][ C3] __do_softirq+0x1f8/0x5df [ 1353.501458][ C3] ? __pfx_run_ksoftirqd+0x10/0x10 [ 1353.501603][ C3] run_ksoftirqd+0x2e/0x60 [ 1353.501743][ C3] smpboot_thread_fn+0x306/0x840 [ 1353.501885][ C3] ? __pfx_smpboot_thread_fn+0x10/0x10 [ 1353.502027][ C3] ? __pfx_smpboot_thread_fn+0x10/0x10 [ 1353.502171][ C3] kthread+0x28a/0x350 [ 1353.502277][ C3] ? __pfx_kthread+0x10/0x10 [ 1353.502418][ C3] ret_from_fork+0x31/0x70 [ 1353.502562][ C3] ? __pfx_kthread+0x10/0x10 [ 1353.502702][ C3] ret_from_fork_asm+0x1a/0x30 [ 1353.502850][ C3] [ 1353.502959][ C3] ================================================================== [ 1353.503189][ C3] Disabling lock debugging due to kernel taint [ 1353.503396][ C3] general protection fault, probably for non-canonical address 0xdffffc0000000001: 0000 [#1] PREEMPT SMP KASAN NOPTI [ 1353.503711][ C3] KASAN: null-ptr-deref in range [0x0000000000000008-0x000000000000000f] [ 1353.503916][ C3] CPU: 3 PID: 33 Comm: ksoftirqd/3 Tainted: G B 6.9.0-rc2-virtme #1 [ 1353.504163][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 1353.504476][ C3] RIP: 0010:sock_def_write_space_wfree+0x221/0x360 [ 1353.504660][ C3] Code: 00 4c 8b bb a0 01 00 00 be 08 00 00 00 4d 8d 77 08 4c 89 f7 e8 e0 0e 8b fe 4c 89 f2 48 b8 00 00 00 00 00 fc ff df 48 c1 ea 03 <80> 3c 02 00 0f 85 fe 00 00 00 49 8b 47 08 a8 04 0f 85 dc fe ff ff [ 1353.505164][ C3] RSP: 0018:ffffc9000025f6b8 EFLAGS: 00010202 [ 1353.505350][ C3] RAX: dffffc0000000000 RBX: ffff88800967aac0 RCX: ffffffffad59564a [ 1353.505590][ C3] RDX: 0000000000000001 RSI: 0000000000000008 RDI: ffffffffb2afda00 [ 1353.505806][ C3] RBP: ffff88800967ab20 R08: 0000000000000001 R09: fffffbfff655fb40 [ 1353.506034][ C3] R10: ffffffffb2afda07 R11: 205d334320202020 R12: 0000000000000000 [ 1353.506253][ C3] R13: ffff88800967ac40 R14: 0000000000000008 R15: 0000000000000000 [ 1353.506474][ C3] FS: 0000000000000000(0000) GS:ffff888036180000(0000) knlGS:0000000000000000 [ 1353.506810][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1353.506991][ C3] CR2: 00007f2af8446000 CR3: 000000000e538001 CR4: 0000000000770ef0 [ 1353.507204][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1353.507486][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1353.507719][ C3] PKRU: 55555554 [ 1353.507832][ C3] Call Trace: [ 1353.508016][ C3] [ 1353.508095][ C3] ? die_addr+0x41/0xa0 [ 1353.508207][ C3] ? exc_general_protection+0x149/0x220 [ 1353.508356][ C3] ? asm_exc_general_protection+0x26/0x30 [ 1353.508503][ C3] ? add_taint+0x2a/0x90 [ 1353.508616][ C3] ? sock_def_write_space_wfree+0x221/0x360 [ 1353.508813][ C3] ? sock_def_write_space_wfree+0x210/0x360 [ 1353.508986][ C3] sock_wfree+0x25f/0x3e0 [ 1353.509094][ C3] skb_release_head_state+0x7a/0x1e0 [ 1353.509235][ C3] consume_skb+0x76/0x110 [ 1353.509410][ C3] skb_pp_cow_data+0x66b/0xad0 [ 1353.509553][ C3] ? __pfx_skb_pp_cow_data+0x10/0x10 [ 1353.509694][ C3] ? veth_xdp_rcv_skb+0x124/0x17f0 [ 1353.509916][ C3] veth_xdp_rcv_skb+0x322/0x17f0 [ 1353.510136][ C3] ? __pfx_veth_xdp_rcv_skb+0x10/0x10 [ 1353.510357][ C3] ? dev_gro_receive+0x1ea/0x1390 [ 1353.510578][ C3] ? trace_napi_gro_receive_exit+0xf3/0x160 [ 1353.510754][ C3] ? napi_gro_receive+0x533/0x780 [ 1353.510978][ C3] veth_xdp_rcv+0x2ff/0xa20 [ 1353.511118][ C3] ? stack_trace_save+0x94/0xd0 [ 1353.511256][ C3] ? __pfx_stack_trace_save+0x10/0x10 [ 1353.511396][ C3] ? __pfx_veth_xdp_rcv+0x10/0x10 [ 1353.511540][ C3] ? kasan_save_stack+0x34/0x50 [ 1353.511680][ C3] ? kasan_save_stack+0x24/0x50 [ 1353.511821][ C3] ? hlock_class+0x4e/0x130 [ 1353.511958][ C3] ? validate_chain+0x130/0x9b0 [ 1353.512101][ C3] veth_poll+0xff/0x620 [ 1353.512206][ C3] ? __pfx_validate_chain+0x10/0x10 [ 1353.512362][ C3] ? __pfx_veth_poll+0x10/0x10 [ 1353.512504][ C3] ? __lock_acquire+0xaf0/0x1570 [ 1353.512647][ C3] ? find_held_lock+0x2c/0x110 [ 1353.512793][ C3] ? __lock_release+0x103/0x460 [ 1353.512935][ C3] ? finish_task_switch.isra.0+0x20f/0x8c0 [ 1353.513113][ C3] ? __pfx___lock_release+0x10/0x10 [ 1353.513257][ C3] ? find_held_lock+0x2c/0x110 [ 1353.513472][ C3] __napi_poll.constprop.0+0xa2/0x460 [ 1353.513616][ C3] net_rx_action+0x49f/0xc00 [ 1353.513756][ C3] ? __schedule+0x6ea/0x1a20 [ 1353.513898][ C3] ? __pfx_net_rx_action+0x10/0x10 [ 1353.514110][ C3] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 1353.514253][ C3] __do_softirq+0x1f8/0x5df [ 1353.514394][ C3] ? __pfx_run_ksoftirqd+0x10/0x10 [ 1353.514535][ C3] run_ksoftirqd+0x2e/0x60 [ 1353.514675][ C3] smpboot_thread_fn+0x306/0x840 [ 1353.514886][ C3] ? __pfx_smpboot_thread_fn+0x10/0x10 [ 1353.515026][ C3] ? __pfx_smpboot_thread_fn+0x10/0x10 [ 1353.515164][ C3] kthread+0x28a/0x350 [ 1353.515275][ C3] ? __pfx_kthread+0x10/0x10 [ 1353.515496][ C3] ret_from_fork+0x31/0x70 [ 1353.515639][ C3] ? __pfx_kthread+0x10/0x10 [ 1353.515781][ C3] ret_from_fork_asm+0x1a/0x30 [ 1353.515926][ C3] [ 1353.516033][ C3] Modules linked in: nft_chain_nat xt_nat nf_nat dccp_ipv6 dccp_ipv4 dccp sch_etf sch_fq cls_matchall ip6_gre gre xt_HL amt xfrm_user l2tp_ip6 l2tp_eth l2tp_ip l2tp_netlink l2tp_core xt_conntrack nf_conntrack nf_defrag_ipv4 nft_compat nf_tables libcrc32c nf_defrag_ipv6 act_mirred cls_u32 ifb drop_monitor netdevsim psample act_gact cls_flower sch_ingress vxlan [last unloaded: test_blackhole_dev] [ 1353.517176][ C3] ---[ end trace 0000000000000000 ]--- [ 1353.517323][ C3] RIP: 0010:sock_def_write_space_wfree+0x221/0x360 [ 1353.517588][ C3] Code: 00 4c 8b bb a0 01 00 00 be 08 00 00 00 4d 8d 77 08 4c 89 f7 e8 e0 0e 8b fe 4c 89 f2 48 b8 00 00 00 00 00 fc ff df 48 c1 ea 03 <80> 3c 02 00 0f 85 fe 00 00 00 49 8b 47 08 a8 04 0f 85 dc fe ff ff [ 1353.518083][ C3] RSP: 0018:ffffc9000025f6b8 EFLAGS: 00010202 [ 1353.518332][ C3] RAX: dffffc0000000000 RBX: ffff88800967aac0 RCX: ffffffffad59564a [ 1353.518539][ C3] RDX: 0000000000000001 RSI: 0000000000000008 RDI: ffffffffb2afda00 [ 1353.518744][ C3] RBP: ffff88800967ab20 R08: 0000000000000001 R09: fffffbfff655fb40 [ 1353.519028][ C3] R10: ffffffffb2afda07 R11: 205d334320202020 R12: 0000000000000000 [ 1353.519235][ C3] R13: ffff88800967ac40 R14: 0000000000000008 R15: 0000000000000000 [ 1353.519441][ C3] FS: 0000000000000000(0000) GS:ffff888036180000(0000) knlGS:0000000000000000 [ 1353.519746][ C3] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1353.519926][ C3] CR2: 00007f2af8446000 CR3: 000000000e538001 CR4: 0000000000770ef0 [ 1353.520276][ C3] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1353.520482][ C3] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1353.520688][ C3] PKRU: 55555554 [ 1353.520797][ C3] Kernel panic - not syncing: Fatal exception in interrupt [ 1353.521172][ C3] Kernel Offset: 0x2c200000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 1353.521485][ C3] ---[ end Kernel panic - not syncing: Fatal exception in interrupt ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr