======================================
| [ 26.129652][ T246] ip (246) used greatest stack depth: 24096 bytes left
| [ 27.332115][ T250] bond0: (slave bond_slave_1): Releasing backup interface
| [ 27.347075][ C3] BUG: spinlock bad magic on CPU#3, ip/250
| [ 27.347388][ C3] lock: noop_qdisc+0x240/0x300, .magic: 00000000, .owner: ip/250, .owner_cpu: 3
[ 27.347867][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014
[ 27.348198][ C3] Call Trace:
[ 27.348309][ C3]
[ 27.348405][ C3] dump_stack_lvl (lib/dump_stack.c:122)
[ 27.348553][ C3] do_raw_spin_unlock (kernel/locking/spinlock_debug.c:100 kernel/locking/spinlock_debug.c:141)
[ 27.348699][ C3] _raw_spin_unlock (./arch/x86/include/asm/preempt.h:94 ./include/linux/spinlock_api_smp.h:143 kernel/locking/spinlock.c:186)
[ 27.348842][ C3] net_tx_action (./include/net/sch_generic.h:226 ./include/net/sch_generic.h:217 ./include/net/pkt_sched.h:128 ./include/net/pkt_sched.h:124 net/core/dev.c:5323)
[ 27.348987][ C3] handle_softirqs (kernel/softirq.c:554)
[ 27.349140][ C3] ? dev_deactivate_many (./include/linux/bottom_half.h:33 ./include/linux/netdevice.h:4448 net/sched/sch_generic.c:571 net/sched/sch_generic.c:1363)
[ 27.349296][ C3] do_softirq (kernel/softirq.c:455 kernel/softirq.c:442)
[ 27.349411][ C3]
[ 27.349485][ C3]
[ 27.349558][ C3] __local_bh_enable_ip (kernel/softirq.c:382)
[ 27.349700][ C3] dev_deactivate_many (net/sched/sch_generic.c:1356)
[ 27.349841][ C3] __dev_close_many (net/core/dev.c:1547)
[ 27.349984][ C3] ? __pfx___dev_close_many (net/core/dev.c:1522)
[ 27.350126][ C3] dev_close_many (net/core/dev.c:1585)
[ 27.350269][ C3] ? __pfx_dev_close_many (net/core/dev.c:1575)
[ 27.350427][ C3] ? ip6_route_dev_notify (./include/net/net_namespace.h:383 ./include/linux/netdevice.h:2586 net/ipv6/route.c:6284)
[ 27.350651][ C3] ? bond_compute_features (drivers/net/bonding/bond_main.c:1429) bonding
[ 27.350981][ C3] dev_close (./include/linux/list.h:111 ./include/linux/list.h:215 ./include/linux/list.h:229 net/core/dev.c:1610 net/core/dev.c:1603)
[ 27.351124][ C3] ? __pfx_dev_close (net/core/dev.c:1604)
[ 27.351327][ C3] ? lockdep_rtnl_is_held (net/core/rtnetlink.c:177)
[ 27.351550][ C3] ? vlan_vids_del_by_dev (net/8021q/vlan_core.c:439 (discriminator 1))
[ 27.351780][ C3] __bond_release_one (drivers/net/bonding/bond_main.c:2501) bonding
[ 27.352092][ C3] ? __pfx___bond_release_one (drivers/net/bonding/bond_main.c:2359) bonding
[ 27.352395][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227)
[ 27.352631][ C3] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3))
[ 27.352802][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5142)
[ 27.353025][ C3] ? find_held_lock (kernel/locking/lockdep.c:5249)
[ 27.353242][ C3] do_set_master (net/core/rtnetlink.c:2687)
[ 27.353471][ C3] do_setlink (net/core/rtnetlink.c:2907)
[ 27.353687][ C3] ? is_bpf_text_address (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 ./kernel/bpf/core.c:769)
[ 27.353887][ C3] ? __pfx_do_setlink (net/core/rtnetlink.c:2778)
[ 27.354123][ C3] ? is_bpf_text_address (./kernel/bpf/core.c:772)
[ 27.354343][ C3] ? kernel_text_address (kernel/extable.c:97 kernel/extable.c:94)
[ 27.354568][ C3] ? __kernel_text_address (kernel/extable.c:79)
[ 27.354788][ C3] ? unwind_get_return_address (arch/x86/kernel/unwind_orc.c:369 arch/x86/kernel/unwind_orc.c:364)
[ 27.355015][ C3] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83)
[ 27.355283][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26)
[ 27.355502][ C3] ? stack_trace_save (kernel/stacktrace.c:123)
[ 27.355721][ C3] ? __pfx_stack_trace_save (kernel/stacktrace.c:114)
[ 27.355944][ C3] ? __pfx_validate_nla (lib/nlattr.c:396)
[ 27.356173][ C3] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3))
[ 27.356345][ C3] ? kasan_save_stack (mm/kasan/common.c:49)
[ 27.356573][ C3] ? __nla_validate_parse (lib/nlattr.c:638)
[ 27.356796][ C3] __rtnl_newlink (net/core/rtnetlink.c:3696)
[ 27.357022][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227)
[ 27.357243][ C3] ? __pfx___rtnl_newlink (net/core/rtnetlink.c:3557)
[ 27.357458][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4299 kernel/locking/lockdep.c:4358)
[ 27.357736][ C3] ? __create_object (mm/kmemleak.c:751)
[ 27.357957][ C3] ? trace_kmalloc (./include/trace/events/kmem.h:54 (discriminator 52))
[ 27.358187][ C3] rtnl_newlink (net/core/rtnetlink.c:3744)
[ 27.358360][ C3] rtnetlink_rcv_msg (net/core/rtnetlink.c:6647)
[ 27.358572][ C3] ? __pfx_rtnetlink_rcv_msg (net/core/rtnetlink.c:6541)
[ 27.358798][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227)
[ 27.359007][ C3] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3))
[ 27.359191][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5142)
[ 27.359403][ C3] netlink_rcv_skb (net/netlink/af_netlink.c:2550)
[ 27.359631][ C3] ? __pfx_rtnetlink_rcv_msg (net/core/rtnetlink.c:6541)
[ 27.359849][ C3] ? __pfx_netlink_rcv_skb (net/netlink/af_netlink.c:2527)
[ 27.360074][ C3] ? netlink_deliver_tap (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 net/netlink/af_netlink.c:340)
[ 27.360297][ C3] ? netlink_deliver_tap (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333)
[ 27.360526][ C3] netlink_unicast (net/netlink/af_netlink.c:1331 net/netlink/af_netlink.c:1357)
[ 27.360761][ C3] ? __pfx_netlink_unicast (net/netlink/af_netlink.c:1342)
[ 27.360988][ C3] ? find_held_lock (kernel/locking/lockdep.c:5249)
[ 27.361206][ C3] netlink_sendmsg (net/netlink/af_netlink.c:1901)
[ 27.361435][ C3] ? __pfx_netlink_sendmsg (net/netlink/af_netlink.c:1820)
[ 27.361650][ C3] ? __might_fault (mm/memory.c:6388 mm/memory.c:6381)
[ 27.361859][ C3] ? __import_iovec (lib/iov_iter.c:1263 lib/iov_iter.c:1279)
[ 27.362072][ C3] ____sys_sendmsg (net/socket.c:730 net/socket.c:745 net/socket.c:2597)
[ 27.362282][ C3] ? __pfx_____sys_sendmsg (net/socket.c:2543)
[ 27.362483][ C3] ? __pfx_copy_msghdr_from_user (net/socket.c:2523)
[ 27.362738][ C3] ? __pfx_validate_chain (kernel/locking/lockdep.c:3824)
[ 27.362946][ C3] ___sys_sendmsg (net/socket.c:2653)
[ 27.363161][ C3] ? __pfx____sys_sendmsg (net/socket.c:2640)
[ 27.363369][ C3] ? find_held_lock (kernel/locking/lockdep.c:5249)
[ 27.363571][ C3] ? __lock_release (kernel/locking/lockdep.c:5435)
[ 27.363778][ C3] ? __debug_check_no_obj_freed (lib/debugobjects.c:1001)
[ 27.364034][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5411)
[ 27.364238][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114)
[ 27.364447][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4299 kernel/locking/lockdep.c:4358)
[ 27.364704][ C3] ? __fget_light (./include/linux/atomic/atomic-arch-fallback.h:479 ./include/linux/atomic/atomic-instrumented.h:50 fs/file.c:1145)
[ 27.364914][ C3] __sys_sendmsg (./include/linux/file.h:34 net/socket.c:2682)
[ 27.365124][ C3] ? __pfx___sys_sendmsg (net/socket.c:2668)
[ 27.365325][ C3] ? __virt_addr_valid (./arch/x86/include/asm/preempt.h:94 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2034 arch/x86/mm/physaddr.c:65)
[ 27.365540][ C3] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83)
[ 27.365751][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130)
[ 27.366010][ C3] RIP: 0033:0x7fb413f277b7
[ 27.366223][ C3] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10
All code
========
0: 0a 00 or (%rax),%al
2: f7 d8 neg %eax
4: 64 89 02 mov %eax,%fs:(%rdx)
7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax
e: eb b9 jmp 0xffffffffffffffc9
10: 0f 1f 00 nopl (%rax)
13: f3 0f 1e fa endbr64
17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax
1e: 00
1f: 85 c0 test %eax,%eax
21: 75 10 jne 0x33
23: b8 2e 00 00 00 mov $0x2e,%eax
28: 0f 05 syscall
2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction
30: 77 51 ja 0x83
32: c3 ret
33: 48 83 ec 28 sub $0x28,%rsp
37: 89 54 24 1c mov %edx,0x1c(%rsp)
3b: 48 89 74 24 10 mov %rsi,0x10(%rsp)
Code starting with the faulting instruction
===========================================
0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax
6: 77 51 ja 0x59
8: c3 ret
9: 48 83 ec 28 sub $0x28,%rsp
d: 89 54 24 1c mov %edx,0x1c(%rsp)
11: 48 89 74 24 10 mov %rsi,0x10(%rsp)
[ 27.366960][ C3] RSP: 002b:00007fffa6be8f48 EFLAGS: 00000246 ORIG_RAX: 000000000000002e
[ 27.367283][ C3] RAX: ffffffffffffffda RBX: 00007fffa6be9670 RCX: 00007fb413f277b7
[ 27.367592][ C3] RDX: 0000000000000000 RSI: 00007fffa6be8fb0 RDI: 0000000000000005
[ 27.367919][ C3] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078
[ 27.368243][ C3] R10: 00007fb413de5ef8 R11: 0000000000000246 R12: 0000000000000002
Finger prints:
do_raw_spin_unlock:_raw_spin_unlock:net_tx_action:handle_softirqs:do_softirq