====================================== | xx__-> [ 27.400620][ T239] netdevsim netdevsim27322 eni27322np1: renamed from eth0 | [ 29.313734][ T250] ip (250) used greatest stack depth: 23848 bytes left | [ 29.610864][ C3] BUG: spinlock bad magic on CPU#3, ip/251 | [ 29.611094][ C3] lock: noop_qdisc+0x240/0x300, .magic: 00000000, .owner: ip/251, .owner_cpu: 3 [ 29.611585][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 29.611899][ C3] Call Trace: [ 29.612009][ C3] [ 29.612082][ C3] dump_stack_lvl (lib/dump_stack.c:122) [ 29.612227][ C3] do_raw_spin_unlock (kernel/locking/spinlock_debug.c:100 kernel/locking/spinlock_debug.c:141) [ 29.612372][ C3] _raw_spin_unlock (./arch/x86/include/asm/preempt.h:94 ./include/linux/spinlock_api_smp.h:143 kernel/locking/spinlock.c:186) [ 29.612515][ C3] net_tx_action (./include/net/sch_generic.h:226 ./include/net/sch_generic.h:217 ./include/net/pkt_sched.h:128 ./include/net/pkt_sched.h:124 net/core/dev.c:5323) [ 29.612658][ C3] handle_softirqs (kernel/softirq.c:554) [ 29.612800][ C3] ? dev_deactivate_many (./include/linux/bottom_half.h:33 ./include/linux/netdevice.h:4448 net/sched/sch_generic.c:571 net/sched/sch_generic.c:1363) [ 29.612941][ C3] do_softirq (kernel/softirq.c:455 kernel/softirq.c:442) [ 29.613050][ C3] [ 29.613121][ C3] [ 29.613194][ C3] __local_bh_enable_ip (kernel/softirq.c:382) [ 29.613331][ C3] dev_deactivate_many (net/sched/sch_generic.c:1356) [ 29.613481][ C3] __dev_close_many (net/core/dev.c:1547) [ 29.613620][ C3] ? __pfx___dev_close_many (net/core/dev.c:1522) [ 29.613758][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4273) [ 29.613898][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4299 kernel/locking/lockdep.c:4358) [ 29.614073][ C3] __dev_change_flags (./include/linux/list.h:111 ./include/linux/list.h:215 ./include/linux/list.h:229 net/core/dev.c:1571 net/core/dev.c:8836) [ 29.614213][ C3] ? __pfx___dev_change_flags (net/core/dev.c:8802) [ 29.614352][ C3] dev_change_flags (net/core/dev.c:8910) [ 29.614493][ C3] do_setlink (net/core/rtnetlink.c:2900) [ 29.614634][ C3] ? is_bpf_text_address (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 ./kernel/bpf/core.c:769) [ 29.614774][ C3] ? __pfx_do_setlink (net/core/rtnetlink.c:2778) [ 29.614913][ C3] ? is_bpf_text_address (./kernel/bpf/core.c:772) [ 29.615053][ C3] ? kernel_text_address (kernel/extable.c:97 kernel/extable.c:94) [ 29.615198][ C3] ? __kernel_text_address (kernel/extable.c:79) [ 29.615336][ C3] ? unwind_get_return_address (arch/x86/kernel/unwind_orc.c:369 arch/x86/kernel/unwind_orc.c:364) [ 29.615475][ C3] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83) [ 29.615652][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26) [ 29.615795][ C3] ? stack_trace_save (kernel/stacktrace.c:123) [ 29.615935][ C3] ? __pfx_stack_trace_save (kernel/stacktrace.c:114) [ 29.616072][ C3] ? stack_depot_save_flags (lib/stackdepot.c:609) [ 29.616215][ C3] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3)) [ 29.616325][ C3] ? kasan_save_stack (mm/kasan/common.c:49) [ 29.616461][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 29.616599][ C3] ? kasan_save_track (./arch/x86/include/asm/current.h:49 mm/kasan/common.c:60 mm/kasan/common.c:69) [ 29.616736][ C3] ? __kasan_kmalloc (mm/kasan/common.c:391) [ 29.616874][ C3] ? rtnl_newlink (./include/linux/slab.h:681 net/core/rtnetlink.c:3739) [ 29.617012][ C3] ? rtnetlink_rcv_msg (net/core/rtnetlink.c:6647) [ 29.617148][ C3] ? netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 29.617288][ C3] ? netlink_unicast (net/netlink/af_netlink.c:1331 net/netlink/af_netlink.c:1357) [ 29.617427][ C3] ? __nla_validate_parse (./include/net/netlink.h:1267 (discriminator 1) lib/nlattr.c:622 (discriminator 1)) [ 29.617570][ C3] ? ____sys_sendmsg (net/socket.c:730 net/socket.c:745 net/socket.c:2597) [ 29.617708][ C3] ? ___sys_sendmsg (net/socket.c:2653) [ 29.617846][ C3] __rtnl_newlink (net/core/rtnetlink.c:3696) [ 29.617992][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227) [ 29.618134][ C3] ? __pfx___rtnl_newlink (net/core/rtnetlink.c:3557) [ 29.618278][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4299 kernel/locking/lockdep.c:4358) [ 29.618452][ C3] ? __create_object (mm/kmemleak.c:751) [ 29.618593][ C3] ? trace_kmalloc (./include/trace/events/kmem.h:54 (discriminator 52)) [ 29.618738][ C3] rtnl_newlink (net/core/rtnetlink.c:3744) [ 29.618844][ C3] rtnetlink_rcv_msg (net/core/rtnetlink.c:6647) [ 29.618982][ C3] ? __pfx_rtnetlink_rcv_msg (net/core/rtnetlink.c:6541) [ 29.619119][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227) [ 29.619259][ C3] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3)) [ 29.619363][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5142) [ 29.619499][ C3] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 29.619644][ C3] ? __pfx_rtnetlink_rcv_msg (net/core/rtnetlink.c:6541) [ 29.619783][ C3] ? __pfx_netlink_rcv_skb (net/netlink/af_netlink.c:2527) [ 29.619929][ C3] ? netlink_deliver_tap (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 net/netlink/af_netlink.c:340) [ 29.620069][ C3] ? netlink_deliver_tap (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333) [ 29.620208][ C3] netlink_unicast (net/netlink/af_netlink.c:1331 net/netlink/af_netlink.c:1357) [ 29.620350][ C3] ? __pfx_netlink_unicast (net/netlink/af_netlink.c:1342) [ 29.620485][ C3] ? find_held_lock (kernel/locking/lockdep.c:5249) [ 29.620623][ C3] netlink_sendmsg (net/netlink/af_netlink.c:1901) [ 29.620767][ C3] ? __pfx_netlink_sendmsg (net/netlink/af_netlink.c:1820) [ 29.620903][ C3] ? __might_fault (mm/memory.c:6388 mm/memory.c:6381) [ 29.621047][ C3] ? __import_iovec (lib/iov_iter.c:1263 lib/iov_iter.c:1279) [ 29.621188][ C3] ____sys_sendmsg (net/socket.c:730 net/socket.c:745 net/socket.c:2597) [ 29.621329][ C3] ? __pfx_____sys_sendmsg (net/socket.c:2543) [ 29.621464][ C3] ? __pfx_copy_msghdr_from_user (net/socket.c:2523) [ 29.621638][ C3] ? __pfx_validate_chain (kernel/locking/lockdep.c:3824) [ 29.621781][ C3] ___sys_sendmsg (net/socket.c:2653) [ 29.621919][ C3] ? __pfx____sys_sendmsg (net/socket.c:2640) [ 29.622056][ C3] ? find_held_lock (kernel/locking/lockdep.c:5249) [ 29.622206][ C3] ? __lock_release (kernel/locking/lockdep.c:5435) [ 29.622345][ C3] ? __debug_check_no_obj_freed (lib/debugobjects.c:1001) [ 29.622522][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5411) [ 29.622661][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 29.622803][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4299 kernel/locking/lockdep.c:4358) [ 29.622976][ C3] ? __fget_light (./include/linux/atomic/atomic-arch-fallback.h:479 ./include/linux/atomic/atomic-instrumented.h:50 fs/file.c:1145) [ 29.623117][ C3] __sys_sendmsg (./include/linux/file.h:34 net/socket.c:2682) [ 29.623257][ C3] ? __pfx___sys_sendmsg (net/socket.c:2668) [ 29.623400][ C3] ? __virt_addr_valid (./arch/x86/include/asm/preempt.h:94 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2034 arch/x86/mm/physaddr.c:65) [ 29.623556][ C3] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 29.623697][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 29.623868][ C3] RIP: 0033:0x7f7b147957b7 [ 29.624017][ C3] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 All code ======== 0: 0a 00 or (%rax),%al 2: f7 d8 neg %eax 4: 64 89 02 mov %eax,%fs:(%rdx) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b9 jmp 0xffffffffffffffc9 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2e 00 00 00 mov $0x2e,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 89 54 24 1c mov %edx,0x1c(%rsp) 3b: 48 89 74 24 10 mov %rsi,0x10(%rsp) Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 89 54 24 1c mov %edx,0x1c(%rsp) 11: 48 89 74 24 10 mov %rsi,0x10(%rsp) [ 29.624505][ C3] RSP: 002b:00007ffd7eaedf18 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 29.624720][ C3] RAX: ffffffffffffffda RBX: 00007ffd7eaee640 RCX: 00007f7b147957b7 [ 29.624925][ C3] RDX: 0000000000000000 RSI: 00007ffd7eaedf80 RDI: 0000000000000003 [ 29.625133][ C3] RBP: 0000000000000003 R08: 0000000000000003 R09: 0000000000000078 [ 29.625348][ C3] R10: 00007f7b14653ef8 R11: 0000000000000246 R12: 0000000000000003 Finger prints: do_raw_spin_unlock:_raw_spin_unlock:net_tx_action:handle_softirqs:do_softirq