[ 40.534874][ T281] eth1: renamed from tmp [ 128.074761][ T536] eth1: renamed from tmp [ 217.072841][ T789] eth1: renamed from tmp [ 302.147473][ T1042] eth1: renamed from tmp [ 388.337707][ T1303] eth1: renamed from tmp [ 475.475976][ T1565] eth1: renamed from tmp [ 856.995855][ T2415] eth1: renamed from tmp [ 899.173929][ T2554] eth2: renamed from tmp [ 1144.121599][ T3127] eth1: renamed from tmp [ 1531.253737][ T4052] eth1: renamed from tmp [ 1689.894615][ T4536] eth1: renamed from tmp [ 1735.112473][ T4701] eth1: renamed from tmp [ 1801.809442][ T4928] eth1: renamed from tmp [ 1826.002304][ T5042] eth1: renamed from tmp [ 1850.611508][ T5156] eth1: renamed from tmp [ 1874.766539][ T5271] eth1: renamed from tmp [ 1900.123429][ T5389] eth1: renamed from tmp [ 1924.855585][ T5507] eth1: renamed from tmp [ 1949.816334][ T5627] eth1: renamed from tmp [ 1974.639860][ T5745] eth1: renamed from tmp [ 1999.516552][ T5863] eth1: renamed from tmp [ 2024.727336][ T5981] eth1: renamed from tmp [ 2050.483312][ T6099] eth1: renamed from tmp [ 2075.501235][ T6218] eth1: renamed from tmp [ 2100.037311][ T6336] eth1: renamed from tmp [ 2124.829331][ T6454] eth1: renamed from tmp [ 2150.134434][ T6572] eth1: renamed from tmp [ 2175.071463][ T6690] eth1: renamed from tmp [ 2200.325426][ T6808] eth1: renamed from tmp [ 2225.752424][ T6926] eth1: renamed from tmp [ 2250.586357][ T7045] eth1: renamed from tmp [ 2275.839122][ T7164] eth1: renamed from tmp [ 2301.399775][ T7283] eth1: renamed from tmp [ 2327.490099][ T7401] eth1: renamed from tmp [ 2353.733702][ T7519] eth1: renamed from tmp [ 2379.517002][ T7637] eth1: renamed from tmp [ 2405.602379][ T7755] eth1: renamed from tmp [ 2431.458456][ T7873] eth1: renamed from tmp [ 2457.190917][ T7991] eth1: renamed from tmp [ 2483.537072][ T8110] eth1: renamed from tmp [ 2510.011422][ T8228] eth1: renamed from tmp [ 2536.022768][ T8346] eth1: renamed from tmp [ 2562.039747][ T8464] eth1: renamed from tmp [ 2586.412358][ T8582] eth1: renamed from tmp [ 2633.613831][ T8769] eth1: renamed from tmp [ 2739.341096][ T9094] eth1: renamed from tmp [ 2844.964302][ T9420] eth1: renamed from tmp [ 2957.177214][ T9757] eth1: renamed from tmp [ 3068.319272][T10095] eth1: renamed from tmp [ 3392.598822][T10878] eth1: renamed from tmp [ 3448.657323][T11061] eth2: renamed from tmp [ 3687.132303][T11651] eth1: renamed from tmp [ 4044.601330][T12689] eth1: renamed from tmp [ 4227.367314][T13248] eth1: renamed from tmp [ 4264.237341][T13392] eth1: renamed from tmp [ 4314.266312][T13576] eth1: renamed from tmp [ 4337.952351][T13690] eth1: renamed from tmp [ 4359.757337][T13804] eth1: renamed from tmp [ 4384.520277][T13922] eth1: renamed from tmp [ 4409.722043][T14040] eth1: renamed from tmp [ 4435.557418][T14158] eth1: renamed from tmp [ 4461.107359][T14276] eth1: renamed from tmp [ 4486.195783][T14394] eth1: renamed from tmp [ 4511.510848][T14512] eth1: renamed from tmp [ 4536.636170][T14629] eth1: renamed from tmp [ 4562.234522][T14748] eth1: renamed from tmp [ 4587.771412][T14866] eth1: renamed from tmp [ 4613.025520][T14986] eth1: renamed from tmp [ 4638.703113][T15104] eth1: renamed from tmp [ 4663.687206][T15222] eth1: renamed from tmp [ 4688.771729][T15340] eth1: renamed from tmp [ 4714.128326][T15458] eth1: renamed from tmp [ 4739.633355][T15576] eth1: renamed from tmp [ 4764.919454][T15694] eth1: renamed from tmp [ 4789.743342][T15813] eth1: renamed from tmp [ 4814.768335][T15931] eth1: renamed from tmp [ 4840.124347][T16049] eth1: renamed from tmp [ 4865.755594][T16169] eth1: renamed from tmp [ 4890.571650][T16287] eth1: renamed from tmp [ 4915.295337][T16404] eth1: renamed from tmp [ 4940.256434][T16521] eth1: renamed from tmp [ 4964.946977][T16639] eth1: renamed from tmp [ 4989.898458][T16757] eth1: renamed from tmp [ 5014.857115][T16875] eth1: renamed from tmp [ 5039.587538][T16993] eth1: renamed from tmp [ 5064.440411][T17111] eth1: renamed from tmp [ 5089.427325][T17229] eth1: renamed from tmp [ 5114.214791][T17347] eth1: renamed from tmp [ 5139.470396][T17466] eth1: renamed from tmp [ 5164.537396][T17584] eth1: renamed from tmp [ 5189.364566][T17702] eth1: renamed from tmp [ 5214.203007][T17820] eth1: renamed from tmp [ 5238.993870][T17939] eth1: renamed from tmp [ 5263.717778][T18057] eth1: renamed from tmp [ 5289.110796][T18174] eth1: renamed from tmp [ 5314.606544][T18291] eth1: renamed from tmp [ 5339.744477][T18410] eth1: renamed from tmp [ 5364.882411][T18528] eth1: renamed from tmp [ 5390.152561][T18646] eth1: renamed from tmp [ 5414.932314][T18764] eth1: renamed from tmp [ 5440.577334][T18882] eth1: renamed from tmp [ 5465.495906][T19000] eth1: renamed from tmp [ 5490.158307][T19118] eth1: renamed from tmp [ 5536.399482][T19299] eth1: renamed from tmp [ 5544.159561][T19346] br0: port 1(eth1) entered blocking state [ 5544.159978][T19346] br0: port 1(eth1) entered disabled state [ 5544.160192][T19346] eth1: entered allmulticast mode [ 5544.161397][T19346] eth1: entered promiscuous mode [ 5544.804265][T19350] br0: port 1(eth1) entered blocking state [ 5544.804827][T19350] br0: port 1(eth1) entered forwarding state [ 5545.146643][T19352] br0: port 1(eth1) entered disabled state [ 5545.148553][T19352] br0: port 1(eth1) entered blocking state [ 5545.148779][T19352] br0: port 1(eth1) entered forwarding state [ 5558.547141][T19381] ================================================================== [ 5558.547401][T19381] BUG: KASAN: slab-use-after-free in neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.547635][T19381] Write of size 8 at addr ffff8880026e1018 by task ip/19381 [ 5558.547861][T19381] [ 5558.547948][T19381] CPU: 1 UID: 0 PID: 19381 Comm: ip Not tainted 6.12.0-rc3-virtme #1 [ 5558.548178][T19381] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 5558.548520][T19381] Call Trace: [ 5558.548641][T19381] [ 5558.548722][T19381] dump_stack_lvl+0x82/0xd0 [ 5558.548883][T19381] print_address_description.constprop.0+0x2c/0x3b0 [ 5558.549080][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.549239][T19381] print_report+0xb4/0x270 [ 5558.549401][T19381] ? kasan_addr_to_slab+0x25/0x80 [ 5558.549558][T19381] kasan_report+0xbd/0xf0 [ 5558.549677][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.549833][T19381] neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.549983][T19381] ? lock_acquire+0x32/0xc0 [ 5558.550142][T19381] __neigh_ifdown.isra.0+0x74/0x440 [ 5558.550294][T19381] ? fib_flush+0x86/0x110 [ 5558.550411][T19381] neigh_ifdown+0x10/0x20 [ 5558.550526][T19381] fib_netdev_event+0x185/0x5a0 [ 5558.550680][T19381] notifier_call_chain+0xcd/0x150 [ 5558.550838][T19381] __netdev_upper_dev_unlink+0x115/0x220 [ 5558.550990][T19381] ? mark_lock+0x38/0x3e0 [ 5558.551116][T19381] ? __pfx___netdev_upper_dev_unlink+0x10/0x10 [ 5558.551313][T19381] netdev_upper_dev_unlink+0x71/0xa0 [ 5558.551464][T19381] ? __pfx_netdev_upper_dev_unlink+0x10/0x10 [ 5558.551655][T19381] ? mutex_is_locked+0x17/0x50 [ 5558.551806][T19381] vrf_del_slave+0x18/0x60 [ 5558.551959][T19381] do_set_master+0xb5/0x1c0 [ 5558.552114][T19381] do_setlink+0x84b/0x2210 [ 5558.552266][T19381] ? is_bpf_text_address+0x67/0x120 [ 5558.552421][T19381] ? __pfx_do_setlink+0x10/0x10 [ 5558.552571][T19381] ? is_bpf_text_address+0x71/0x120 [ 5558.552722][T19381] ? kernel_text_address+0xce/0xe0 [ 5558.552878][T19381] ? __kernel_text_address+0x12/0x40 [ 5558.553031][T19381] ? unwind_get_return_address+0x5e/0xa0 [ 5558.553183][T19381] ? __pfx_stack_trace_consume_entry+0x10/0x10 [ 5558.553374][T19381] ? arch_stack_walk+0xa2/0xf0 [ 5558.553531][T19381] ? stack_trace_save+0x94/0xd0 [ 5558.553686][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.553839][T19381] ? __pfx_validate_nla+0x10/0x10 [ 5558.553994][T19381] ? mark_lock+0x38/0x3e0 [ 5558.554111][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.554263][T19381] ? __nla_validate_parse+0x1bc/0x3d0 [ 5558.554418][T19381] __rtnl_newlink+0xaa7/0xd80 [ 5558.554573][T19381] ? hlock_class+0x4e/0x130 [ 5558.554727][T19381] ? __pfx___rtnl_newlink+0x10/0x10 [ 5558.554881][T19381] ? lockdep_hardirqs_on_prepare+0x275/0x410 [ 5558.555071][T19381] ? __create_object+0x5e/0xb0 [ 5558.555223][T19381] ? trace_kmalloc+0x2d/0xe0 [ 5558.555381][T19381] rtnl_newlink+0x63/0xa0 [ 5558.555497][T19381] rtnetlink_rcv_msg+0x2fb/0xc10 [ 5558.555650][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.555803][T19381] ? hlock_class+0x4e/0x130 [ 5558.555958][T19381] ? mark_lock+0x38/0x3e0 [ 5558.556072][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.556228][T19381] netlink_rcv_skb+0x130/0x360 [ 5558.556382][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.556536][T19381] ? __pfx_netlink_rcv_skb+0x10/0x10 [ 5558.556695][T19381] ? netlink_deliver_tap+0x13e/0x340 [ 5558.556849][T19381] ? netlink_deliver_tap+0xc3/0x340 [ 5558.557002][T19381] netlink_unicast+0x44b/0x710 [ 5558.557157][T19381] ? __pfx_netlink_unicast+0x10/0x10 [ 5558.557311][T19381] ? find_held_lock+0x2c/0x110 [ 5558.557467][T19381] netlink_sendmsg+0x723/0xbe0 [ 5558.557620][T19381] ? __pfx_netlink_sendmsg+0x10/0x10 [ 5558.557770][T19381] ? __might_fault+0xc3/0x170 [ 5558.557927][T19381] ? __import_iovec+0x35d/0x5d0 [ 5558.558085][T19381] ____sys_sendmsg+0x7ac/0xa10 [ 5558.558236][T19381] ? __pfx_____sys_sendmsg+0x10/0x10 [ 5558.558390][T19381] ? __pfx_copy_msghdr_from_user+0x10/0x10 [ 5558.558584][T19381] ___sys_sendmsg+0xee/0x170 [ 5558.558739][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.558892][T19381] ? __pfx____sys_sendmsg+0x10/0x10 [ 5558.559044][T19381] ? __pfx_validate_chain+0x10/0x10 [ 5558.559196][T19381] ? __pfx_slab_free_after_rcu_debug+0x10/0x10 [ 5558.559385][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.559540][T19381] ? kasan_save_stack+0x24/0x50 [ 5558.559690][T19381] ? __kasan_record_aux_stack+0x8e/0xa0 [ 5558.559842][T19381] ? __call_rcu_common.constprop.0+0xa1/0x4b0 [ 5558.560038][T19381] ? __x64_sys_close+0x7c/0xd0 [ 5558.560189][T19381] ? do_syscall_64+0xc1/0x1d0 [ 5558.560344][T19381] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.560533][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.560688][T19381] ? find_held_lock+0x2c/0x110 [ 5558.560843][T19381] ? __lock_release+0x103/0x460 [ 5558.560993][T19381] ? fdget+0x52/0x1e0 [ 5558.561118][T19381] __sys_sendmsg+0xcd/0x170 [ 5558.561272][T19381] ? __pfx___sys_sendmsg+0x10/0x10 [ 5558.561423][T19381] ? __virt_addr_valid+0x22b/0x430 [ 5558.561580][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.561754][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.561946][T19381] RIP: 0033:0x7f5f1c1187b7 [ 5558.562105][T19381] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 5558.562643][T19381] RSP: 002b:00007fff6c18d378 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 5558.562875][T19381] RAX: ffffffffffffffda RBX: 00007fff6c18daa0 RCX: 00007f5f1c1187b7 [ 5558.563101][T19381] RDX: 0000000000000000 RSI: 00007fff6c18d3e0 RDI: 0000000000000005 [ 5558.563336][T19381] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 5558.563564][T19381] R10: 00007f5f1bfd6ef8 R11: 0000000000000246 R12: 0000000000000002 [ 5558.563791][T19381] R13: 000000006716af79 R14: 0000000000496600 R15: 0000000000000000 [ 5558.564024][T19381] [ 5558.564139][T19381] [ 5558.564216][T19381] Allocated by task 19370: [ 5558.564369][T19381] kasan_save_stack+0x24/0x50 [ 5558.564525][T19381] kasan_save_track+0x14/0x30 [ 5558.564674][T19381] __kasan_kmalloc+0x7f/0x90 [ 5558.564828][T19381] __kmalloc_noprof+0x1ab/0x3a0 [ 5558.564981][T19381] neigh_alloc+0x6f2/0x9d0 [ 5558.565134][T19381] ___neigh_create+0x6d/0xf30 [ 5558.565282][T19381] ip_finish_output2+0xc7d/0x18a0 [ 5558.565438][T19381] ip_output+0x174/0x4f0 [ 5558.565553][T19381] ip_push_pending_frames+0x24b/0x480 [ 5558.565700][T19381] icmp_reply+0x72e/0x990 [ 5558.565817][T19381] icmp_echo.part.0+0x182/0x220 [ 5558.565967][T19381] icmp_echo+0xcc/0x190 [ 5558.566081][T19381] icmp_rcv+0x789/0xeb0 [ 5558.566198][T19381] ip_protocol_deliver_rcu+0x2e7/0x360 [ 5558.566349][T19381] ip_local_deliver_finish+0x2af/0x490 [ 5558.566501][T19381] ip_local_deliver+0x194/0x470 [ 5558.566651][T19381] ip_rcv+0x564/0x740 [ 5558.566766][T19381] __netif_receive_skb_one_core+0x166/0x1b0 [ 5558.566953][T19381] netif_receive_skb_internal+0xb0/0x330 [ 5558.567108][T19381] netif_receive_skb+0x1b/0x30 [ 5558.567262][T19381] br_handle_frame_finish+0x10d3/0x1d10 [ 5558.567411][T19381] br_handle_frame+0x616/0xdb0 [ 5558.567562][T19381] __netif_receive_skb_core.constprop.0+0x768/0x2eb0 [ 5558.567751][T19381] __netif_receive_skb_one_core+0xaf/0x1b0 [ 5558.567939][T19381] process_backlog+0x372/0x1180 [ 5558.568088][T19381] __napi_poll.constprop.0+0xa2/0x460 [ 5558.568238][T19381] net_rx_action+0x50e/0xce0 [ 5558.568392][T19381] handle_softirqs+0x1f6/0x5c0 [ 5558.568546][T19381] do_softirq+0x4d/0xa0 [ 5558.568660][T19381] __local_bh_enable_ip+0xf6/0x120 [ 5558.568811][T19381] __dev_queue_xmit+0x7b3/0x18c0 [ 5558.568962][T19381] ip_finish_output2+0x66e/0x18a0 [ 5558.569200][T19381] ip_output+0x174/0x4f0 [ 5558.569315][T19381] ip_push_pending_frames+0x24b/0x480 [ 5558.569464][T19381] raw_sendmsg+0xea0/0x1790 [ 5558.569613][T19381] __sys_sendto+0x32c/0x400 [ 5558.569933][T19381] __x64_sys_sendto+0xe0/0x1c0 [ 5558.570087][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.570239][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.570426][T19381] [ 5558.570503][T19381] Freed by task 1802201963: [ 5558.570734][T19381] ------------[ cut here ]------------ [ 5558.570891][T19381] pool index 93034 out of bounds (861) for stack id 6b6b6b6b [ 5558.571159][T19381] WARNING: CPU: 1 PID: 19381 at lib/stackdepot.c:451 depot_fetch_stack+0x96/0xc0 [ 5558.571532][T19381] Modules linked in: ip6t_REJECT ipt_REJECT nft_compat nf_tables libcrc32c [ 5558.571815][T19381] CPU: 1 UID: 0 PID: 19381 Comm: ip Not tainted 6.12.0-rc3-virtme #1 [ 5558.572050][T19381] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 5558.572493][T19381] RIP: 0010:depot_fetch_stack+0x96/0xc0 [ 5558.572657][T19381] Code: 18 a3 ce 8f e8 9b 58 bd 01 83 f8 01 75 b8 90 0f 0b 90 eb b2 90 48 c7 c7 e0 e2 46 8f 44 89 e1 44 89 ea 89 ee e8 3b ad 0c ff 90 <0f> 0b 90 90 31 c0 eb bb 90 0f 0b 90 eb b5 90 0f 0b 90 31 c0 eb ad [ 5558.573313][T19381] RSP: 0018:ffffc9000087edd8 EFLAGS: 00010082 [ 5558.573510][T19381] RAX: 0000000000000000 RBX: 0000000000001b50 RCX: 1ffffffff1efdc3c [ 5558.573840][T19381] RDX: 0000000000000000 RSI: 0000000000000004 RDI: 0000000000000001 [ 5558.574078][T19381] RBP: 0000000000016b6a R08: 0000000000000000 R09: fffffbfff1efdc3c [ 5558.574314][T19381] R10: 0000000000000003 R11: 205d313833393154 R12: 000000006b6b6b6b [ 5558.574647][T19381] R13: 000000000000035d R14: 0000000000000008 R15: ffff888009a045c0 [ 5558.574884][T19381] FS: 00007f5f1bf0c800(0000) GS:ffff888036080000(0000) knlGS:0000000000000000 [ 5558.575158][T19381] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5558.575461][T19381] CR2: 00000000004e3868 CR3: 00000000059e2003 CR4: 0000000000772ef0 [ 5558.575699][T19381] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5558.575937][T19381] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5558.576171][T19381] PKRU: 55555554 [ 5558.576292][T19381] Call Trace: [ 5558.576412][T19381] [ 5558.576496][T19381] ? depot_fetch_stack+0x96/0xc0 [ 5558.576750][T19381] ? __warn+0xd1/0x1c0 [ 5558.576873][T19381] ? __down_trylock_console_sem+0x75/0xb0 [ 5558.577034][T19381] ? depot_fetch_stack+0x96/0xc0 [ 5558.577193][T19381] ? report_bug+0x28c/0x2d0 [ 5558.577353][T19381] ? handle_bug+0x54/0xa0 [ 5558.577559][T19381] ? exc_invalid_op+0x18/0x50 [ 5558.577711][T19381] ? asm_exc_invalid_op+0x1a/0x20 [ 5558.577861][T19381] ? depot_fetch_stack+0x96/0xc0 [ 5558.578008][T19381] ? depot_fetch_stack+0x95/0xc0 [ 5558.578250][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.578396][T19381] stack_depot_fetch+0x42/0x80 [ 5558.578546][T19381] stack_depot_print+0x20/0x60 [ 5558.578692][T19381] print_address_description.constprop.0+0x335/0x3b0 [ 5558.578984][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.579145][T19381] print_report+0xb4/0x270 [ 5558.579304][T19381] ? kasan_addr_to_slab+0x25/0x80 [ 5558.579463][T19381] kasan_report+0xbd/0xf0 [ 5558.579589][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.579842][T19381] neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.580000][T19381] ? lock_acquire+0x32/0xc0 [ 5558.580162][T19381] __neigh_ifdown.isra.0+0x74/0x440 [ 5558.580316][T19381] ? fib_flush+0x86/0x110 [ 5558.580522][T19381] neigh_ifdown+0x10/0x20 [ 5558.580633][T19381] fib_netdev_event+0x185/0x5a0 [ 5558.580786][T19381] notifier_call_chain+0xcd/0x150 [ 5558.580936][T19381] __netdev_upper_dev_unlink+0x115/0x220 [ 5558.581087][T19381] ? mark_lock+0x38/0x3e0 [ 5558.581297][T19381] ? __pfx___netdev_upper_dev_unlink+0x10/0x10 [ 5558.581485][T19381] netdev_upper_dev_unlink+0x71/0xa0 [ 5558.581633][T19381] ? __pfx_netdev_upper_dev_unlink+0x10/0x10 [ 5558.581819][T19381] ? mutex_is_locked+0x17/0x50 [ 5558.582149][T19381] vrf_del_slave+0x18/0x60 [ 5558.582297][T19381] do_set_master+0xb5/0x1c0 [ 5558.582444][T19381] do_setlink+0x84b/0x2210 [ 5558.582594][T19381] ? is_bpf_text_address+0x67/0x120 [ 5558.582838][T19381] ? __pfx_do_setlink+0x10/0x10 [ 5558.582986][T19381] ? is_bpf_text_address+0x71/0x120 [ 5558.583133][T19381] ? kernel_text_address+0xce/0xe0 [ 5558.583283][T19381] ? __kernel_text_address+0x12/0x40 [ 5558.583520][T19381] ? unwind_get_return_address+0x5e/0xa0 [ 5558.583668][T19381] ? __pfx_stack_trace_consume_entry+0x10/0x10 [ 5558.583857][T19381] ? arch_stack_walk+0xa2/0xf0 [ 5558.584010][T19381] ? stack_trace_save+0x94/0xd0 [ 5558.584250][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.584398][T19381] ? __pfx_validate_nla+0x10/0x10 [ 5558.584546][T19381] ? mark_lock+0x38/0x3e0 [ 5558.584658][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.584807][T19381] ? __nla_validate_parse+0x1bc/0x3d0 [ 5558.585048][T19381] __rtnl_newlink+0xaa7/0xd80 [ 5558.585196][T19381] ? hlock_class+0x4e/0x130 [ 5558.585347][T19381] ? __pfx___rtnl_newlink+0x10/0x10 [ 5558.585495][T19381] ? lockdep_hardirqs_on_prepare+0x275/0x410 [ 5558.585774][T19381] ? __create_object+0x5e/0xb0 [ 5558.585922][T19381] ? trace_kmalloc+0x2d/0xe0 [ 5558.586071][T19381] rtnl_newlink+0x63/0xa0 [ 5558.586182][T19381] rtnetlink_rcv_msg+0x2fb/0xc10 [ 5558.586425][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.586573][T19381] ? hlock_class+0x4e/0x130 [ 5558.586725][T19381] ? mark_lock+0x38/0x3e0 [ 5558.586841][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.586989][T19381] netlink_rcv_skb+0x130/0x360 [ 5558.587230][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.587378][T19381] ? __pfx_netlink_rcv_skb+0x10/0x10 [ 5558.587529][T19381] ? netlink_deliver_tap+0x13e/0x340 [ 5558.587678][T19381] ? netlink_deliver_tap+0xc3/0x340 [ 5558.587921][T19381] netlink_unicast+0x44b/0x710 [ 5558.588071][T19381] ? __pfx_netlink_unicast+0x10/0x10 [ 5558.588219][T19381] ? find_held_lock+0x2c/0x110 [ 5558.588372][T19381] netlink_sendmsg+0x723/0xbe0 [ 5558.588614][T19381] ? __pfx_netlink_sendmsg+0x10/0x10 [ 5558.588761][T19381] ? __might_fault+0xc3/0x170 [ 5558.588910][T19381] ? __import_iovec+0x35d/0x5d0 [ 5558.589060][T19381] ____sys_sendmsg+0x7ac/0xa10 [ 5558.589209][T19381] ? __pfx_____sys_sendmsg+0x10/0x10 [ 5558.589462][T19381] ? __pfx_copy_msghdr_from_user+0x10/0x10 [ 5558.589654][T19381] ___sys_sendmsg+0xee/0x170 [ 5558.589806][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.589954][T19381] ? __pfx____sys_sendmsg+0x10/0x10 [ 5558.590100][T19381] ? __pfx_validate_chain+0x10/0x10 [ 5558.590247][T19381] ? __pfx_slab_free_after_rcu_debug+0x10/0x10 [ 5558.590429][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.590576][T19381] ? kasan_save_stack+0x24/0x50 [ 5558.590819][T19381] ? __kasan_record_aux_stack+0x8e/0xa0 [ 5558.590966][T19381] ? __call_rcu_common.constprop.0+0xa1/0x4b0 [ 5558.591155][T19381] ? __x64_sys_close+0x7c/0xd0 [ 5558.591311][T19381] ? do_syscall_64+0xc1/0x1d0 [ 5558.591548][T19381] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.591731][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.591881][T19381] ? find_held_lock+0x2c/0x110 [ 5558.592028][T19381] ? __lock_release+0x103/0x460 [ 5558.592270][T19381] ? fdget+0x52/0x1e0 [ 5558.592386][T19381] __sys_sendmsg+0xcd/0x170 [ 5558.592534][T19381] ? __pfx___sys_sendmsg+0x10/0x10 [ 5558.592681][T19381] ? __virt_addr_valid+0x22b/0x430 [ 5558.592930][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.593078][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.593260][T19381] RIP: 0033:0x7f5f1c1187b7 [ 5558.593411][T19381] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 5558.594131][T19381] RSP: 002b:00007fff6c18d378 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 5558.594449][T19381] RAX: ffffffffffffffda RBX: 00007fff6c18daa0 RCX: 00007f5f1c1187b7 [ 5558.594669][T19381] RDX: 0000000000000000 RSI: 00007fff6c18d3e0 RDI: 0000000000000005 [ 5558.594895][T19381] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 5558.595209][T19381] R10: 00007f5f1bfd6ef8 R11: 0000000000000246 R12: 0000000000000002 [ 5558.595430][T19381] R13: 000000006716af79 R14: 0000000000496600 R15: 0000000000000000 [ 5558.595651][T19381] [ 5558.595764][T19381] irq event stamp: 156119 [ 5558.595970][T19381] hardirqs last enabled at (156117): [] __call_rcu_common.constprop.0+0x200/0x4b0 [ 5558.596261][T19381] hardirqs last disabled at (156119): [] _raw_spin_lock_irqsave+0x58/0x60 [ 5558.596654][T19381] softirqs last enabled at (156004): [] inet6_fill_ifla6_attrs+0x56f/0x740 [ 5558.596948][T19381] softirqs last disabled at (156118): [] __neigh_ifdown.isra.0+0x2e/0x440 [ 5558.597337][T19381] ---[ end trace 0000000000000000 ]--- [ 5558.597485][T19381] ------------[ cut here ]------------ [ 5558.597626][T19381] corrupt handle or use after stack_depot_put() [ 5558.597655][T19381] WARNING: CPU: 1 PID: 19381 at lib/stackdepot.c:711 stack_depot_fetch+0x6f/0x80 [ 5558.598115][T19381] Modules linked in: ip6t_REJECT ipt_REJECT nft_compat nf_tables libcrc32c [ 5558.598382][T19381] CPU: 1 UID: 0 PID: 19381 Comm: ip Tainted: G W 6.12.0-rc3-virtme #1 [ 5558.598732][T19381] Tainted: [W]=WARN [ 5558.598850][T19381] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 5558.599174][T19381] RIP: 0010:stack_depot_fetch+0x6f/0x80 [ 5558.599325][T19381] Code: 74 1a 48 8d 50 20 48 89 13 5b 8b 40 14 5d 41 5c c3 cc cc cc cc 31 c0 c3 cc cc cc cc 90 48 c7 c7 c0 e3 46 8f e8 22 a8 0c ff 90 <0f> 0b 90 90 eb bb 66 66 2e 0f 1f 84 00 00 00 00 00 90 90 90 90 90 [ 5558.599939][T19381] RSP: 0018:ffffc9000087ee00 EFLAGS: 00010086 [ 5558.600213][T19381] RAX: 0000000000000000 RBX: ffffc9000087ee20 RCX: 1ffffffff1efdc3c [ 5558.600429][T19381] RDX: 0000000000000000 RSI: 0000000000000004 RDI: 0000000000000001 [ 5558.600645][T19381] RBP: 000000006b6b6b6b R08: 0000000000000000 R09: fffffbfff1efdc3c [ 5558.600957][T19381] R10: 0000000000000003 R11: 6361747320726574 R12: 0000000000000000 [ 5558.601185][T19381] R13: ffffffff8dcc6f07 R14: 0000000000000008 R15: ffff888009a045c0 [ 5558.601401][T19381] FS: 00007f5f1bf0c800(0000) GS:ffff888036080000(0000) knlGS:0000000000000000 [ 5558.601751][T19381] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5558.601933][T19381] CR2: 00000000004e3868 CR3: 00000000059e2003 CR4: 0000000000772ef0 [ 5558.602151][T19381] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5558.602473][T19381] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5558.602689][T19381] PKRU: 55555554 [ 5558.602809][T19381] Call Trace: [ 5558.602926][T19381] [ 5558.603007][T19381] ? stack_depot_fetch+0x6f/0x80 [ 5558.603156][T19381] ? __warn+0xd1/0x1c0 [ 5558.603267][T19381] ? stack_depot_fetch+0x6f/0x80 [ 5558.603412][T19381] ? report_bug+0x28c/0x2d0 [ 5558.603559][T19381] ? handle_bug+0x54/0xa0 [ 5558.603767][T19381] ? exc_invalid_op+0x18/0x50 [ 5558.603913][T19381] ? asm_exc_invalid_op+0x1a/0x20 [ 5558.604057][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.604204][T19381] ? stack_depot_fetch+0x6f/0x80 [ 5558.604445][T19381] stack_depot_print+0x20/0x60 [ 5558.604591][T19381] print_address_description.constprop.0+0x335/0x3b0 [ 5558.604773][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.604919][T19381] print_report+0xb4/0x270 [ 5558.605247][T19381] ? kasan_addr_to_slab+0x25/0x80 [ 5558.605394][T19381] kasan_report+0xbd/0xf0 [ 5558.605506][T19381] ? neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.605652][T19381] neigh_flush_dev.isra.0+0x5e7/0x650 [ 5558.605797][T19381] ? lock_acquire+0x32/0xc0 [ 5558.606033][T19381] __neigh_ifdown.isra.0+0x74/0x440 [ 5558.606177][T19381] ? fib_flush+0x86/0x110 [ 5558.606289][T19381] neigh_ifdown+0x10/0x20 [ 5558.606400][T19381] fib_netdev_event+0x185/0x5a0 [ 5558.606637][T19381] notifier_call_chain+0xcd/0x150 [ 5558.606785][T19381] __netdev_upper_dev_unlink+0x115/0x220 [ 5558.606930][T19381] ? mark_lock+0x38/0x3e0 [ 5558.607040][T19381] ? __pfx___netdev_upper_dev_unlink+0x10/0x10 [ 5558.607225][T19381] netdev_upper_dev_unlink+0x71/0xa0 [ 5558.607468][T19381] ? __pfx_netdev_upper_dev_unlink+0x10/0x10 [ 5558.607649][T19381] ? mutex_is_locked+0x17/0x50 [ 5558.607796][T19381] vrf_del_slave+0x18/0x60 [ 5558.607942][T19381] do_set_master+0xb5/0x1c0 [ 5558.608088][T19381] do_setlink+0x84b/0x2210 [ 5558.608234][T19381] ? is_bpf_text_address+0x67/0x120 [ 5558.608379][T19381] ? __pfx_do_setlink+0x10/0x10 [ 5558.608524][T19381] ? is_bpf_text_address+0x71/0x120 [ 5558.608761][T19381] ? kernel_text_address+0xce/0xe0 [ 5558.608907][T19381] ? __kernel_text_address+0x12/0x40 [ 5558.609055][T19381] ? unwind_get_return_address+0x5e/0xa0 [ 5558.609200][T19381] ? __pfx_stack_trace_consume_entry+0x10/0x10 [ 5558.609475][T19381] ? arch_stack_walk+0xa2/0xf0 [ 5558.609623][T19381] ? stack_trace_save+0x94/0xd0 [ 5558.609773][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.609919][T19381] ? __pfx_validate_nla+0x10/0x10 [ 5558.610064][T19381] ? mark_lock+0x38/0x3e0 [ 5558.610176][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.610323][T19381] ? __nla_validate_parse+0x1bc/0x3d0 [ 5558.610473][T19381] __rtnl_newlink+0xaa7/0xd80 [ 5558.610620][T19381] ? hlock_class+0x4e/0x130 [ 5558.610857][T19381] ? __pfx___rtnl_newlink+0x10/0x10 [ 5558.611003][T19381] ? lockdep_hardirqs_on_prepare+0x275/0x410 [ 5558.611188][T19381] ? __create_object+0x5e/0xb0 [ 5558.611334][T19381] ? trace_kmalloc+0x2d/0xe0 [ 5558.611571][T19381] rtnl_newlink+0x63/0xa0 [ 5558.611682][T19381] rtnetlink_rcv_msg+0x2fb/0xc10 [ 5558.611831][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.611976][T19381] ? hlock_class+0x4e/0x130 [ 5558.612211][T19381] ? mark_lock+0x38/0x3e0 [ 5558.612330][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.612476][T19381] netlink_rcv_skb+0x130/0x360 [ 5558.612621][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.612768][T19381] ? __pfx_netlink_rcv_skb+0x10/0x10 [ 5558.613007][T19381] ? netlink_deliver_tap+0x13e/0x340 [ 5558.613158][T19381] ? netlink_deliver_tap+0xc3/0x340 [ 5558.613304][T19381] netlink_unicast+0x44b/0x710 [ 5558.613450][T19381] ? __pfx_netlink_unicast+0x10/0x10 [ 5558.613686][T19381] ? find_held_lock+0x2c/0x110 [ 5558.613833][T19381] netlink_sendmsg+0x723/0xbe0 [ 5558.613978][T19381] ? __pfx_netlink_sendmsg+0x10/0x10 [ 5558.614123][T19381] ? __might_fault+0xc3/0x170 [ 5558.614367][T19381] ? __import_iovec+0x35d/0x5d0 [ 5558.614519][T19381] ____sys_sendmsg+0x7ac/0xa10 [ 5558.614665][T19381] ? __pfx_____sys_sendmsg+0x10/0x10 [ 5558.614810][T19381] ? __pfx_copy_msghdr_from_user+0x10/0x10 [ 5558.614994][T19381] ___sys_sendmsg+0xee/0x170 [ 5558.615139][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.615285][T19381] ? __pfx____sys_sendmsg+0x10/0x10 [ 5558.615430][T19381] ? __pfx_validate_chain+0x10/0x10 [ 5558.615666][T19381] ? __pfx_slab_free_after_rcu_debug+0x10/0x10 [ 5558.615849][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.615994][T19381] ? kasan_save_stack+0x24/0x50 [ 5558.616140][T19381] ? __kasan_record_aux_stack+0x8e/0xa0 [ 5558.616385][T19381] ? __call_rcu_common.constprop.0+0xa1/0x4b0 [ 5558.616565][T19381] ? __x64_sys_close+0x7c/0xd0 [ 5558.616710][T19381] ? do_syscall_64+0xc1/0x1d0 [ 5558.616856][T19381] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.617038][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.617189][T19381] ? find_held_lock+0x2c/0x110 [ 5558.617335][T19381] ? __lock_release+0x103/0x460 [ 5558.617480][T19381] ? fdget+0x52/0x1e0 [ 5558.617592][T19381] __sys_sendmsg+0xcd/0x170 [ 5558.617828][T19381] ? __pfx___sys_sendmsg+0x10/0x10 [ 5558.617973][T19381] ? __virt_addr_valid+0x22b/0x430 [ 5558.618124][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.618270][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.618542][T19381] RIP: 0033:0x7f5f1c1187b7 [ 5558.618691][T19381] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 5558.619296][T19381] RSP: 002b:00007fff6c18d378 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 5558.619513][T19381] RAX: ffffffffffffffda RBX: 00007fff6c18daa0 RCX: 00007f5f1c1187b7 [ 5558.619733][T19381] RDX: 0000000000000000 RSI: 00007fff6c18d3e0 RDI: 0000000000000005 [ 5558.620040][T19381] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 5558.620254][T19381] R10: 00007f5f1bfd6ef8 R11: 0000000000000246 R12: 0000000000000002 [ 5558.620561][T19381] R13: 000000006716af79 R14: 0000000000496600 R15: 0000000000000000 [ 5558.620781][T19381] [ 5558.620890][T19381] irq event stamp: 156119 [ 5558.621000][T19381] hardirqs last enabled at (156117): [] __call_rcu_common.constprop.0+0x200/0x4b0 [ 5558.621380][T19381] hardirqs last disabled at (156119): [] _raw_spin_lock_irqsave+0x58/0x60 [ 5558.621666][T19381] softirqs last enabled at (156004): [] inet6_fill_ifla6_attrs+0x56f/0x740 [ 5558.621950][T19381] softirqs last disabled at (156118): [] __neigh_ifdown.isra.0+0x2e/0x440 [ 5558.622243][T19381] ---[ end trace 0000000000000000 ]--- [ 5558.622387][T19381] [ 5558.622459][T19381] Last potentially related work creation: [ 5558.622681][T19381] kasan_save_stack+0x24/0x50 [ 5558.622823][T19381] __kasan_record_aux_stack+0x8e/0xa0 [ 5558.622962][T19381] kvfree_call_rcu+0x114/0x4b0 [ 5558.623101][T19381] neigh_remove_one+0x1a3/0x200 [ 5558.623328][T19381] neigh_delete+0x29f/0x490 [ 5558.623470][T19381] rtnetlink_rcv_msg+0x2fb/0xc10 [ 5558.623610][T19381] netlink_rcv_skb+0x130/0x360 [ 5558.623751][T19381] netlink_unicast+0x44b/0x710 [ 5558.623977][T19381] netlink_sendmsg+0x723/0xbe0 [ 5558.624116][T19381] __sys_sendto+0x377/0x400 [ 5558.624255][T19381] __x64_sys_sendto+0xe0/0x1c0 [ 5558.624395][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.624621][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.624794][T19381] [ 5558.624872][T19381] The buggy address belongs to the object at ffff8880026e1000 [ 5558.624872][T19381] which belongs to the cache kmalloc-1k of size 1024 [ 5558.625293][T19381] The buggy address is located 24 bytes inside of [ 5558.625293][T19381] freed 1024-byte region [ffff8880026e1000, ffff8880026e1400) [ 5558.625627][T19381] [ 5558.625698][T19381] The buggy address belongs to the physical page: [ 5558.625869][T19381] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0xffff8880026e1000 pfn:0x26e0 [ 5558.626158][T19381] head: order:3 mapcount:0 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 5558.626372][T19381] flags: 0x80000000000240(workingset|head|node=0|zone=1) [ 5558.626634][T19381] page_type: f5(slab) [ 5558.626745][T19381] raw: 0080000000000240 ffff8880010430c0 ffffea0000149010 ffffea000029c810 [ 5558.626991][T19381] raw: ffff8880026e1000 00000000000a0009 00000001f5000000 0000000000000000 [ 5558.627426][T19381] head: 0080000000000240 ffff8880010430c0 ffffea0000149010 ffffea000029c810 [ 5558.627674][T19381] head: ffff8880026e1000 00000000000a0009 00000001f5000000 0000000000000000 [ 5558.627919][T19381] head: 0080000000000003 ffffea000009b801 ffffffffffffffff 0000000000000000 [ 5558.628163][T19381] head: 0000000000000008 0000000000000000 00000000ffffffff 0000000000000000 [ 5558.628406][T19381] page dumped because: kasan: bad access detected [ 5558.628665][T19381] [ 5558.628734][T19381] Memory state around the buggy address: [ 5558.628870][T19381] ffff8880026e0f00: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 5558.629074][T19381] ffff8880026e0f80: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 5558.629359][T19381] >ffff8880026e1000: fa fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 5558.629561][T19381] ^ [ 5558.629701][T19381] ffff8880026e1080: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 5558.629914][T19381] ffff8880026e1100: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 5558.630117][T19381] ================================================================== [ 5558.630344][T19381] Disabling lock debugging due to kernel taint [ 5558.630697][T19381] Oops: general protection fault, probably for non-canonical address 0xed6d696d6d6d6d6d: 0000 [#1] PREEMPT SMP KASAN NOPTI [ 5558.631033][T19381] KASAN: maybe wild-memory-access in range [0x6b6b6b6b6b6b6b68-0x6b6b6b6b6b6b6b6f] [ 5558.631357][T19381] CPU: 1 UID: 0 PID: 19381 Comm: ip Tainted: G B W 6.12.0-rc3-virtme #1 [ 5558.631595][T19381] Tainted: [B]=BAD_PAGE, [W]=WARN [ 5558.631730][T19381] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 5558.632120][T19381] RIP: 0010:neigh_flush_dev.isra.0+0x10a/0x650 [ 5558.632294][T19381] Code: 0f 85 ef 04 00 00 49 8d 7f 08 49 8b 1f 48 89 f8 48 c1 e8 03 42 80 3c 28 00 0f 85 cc 04 00 00 49 8b 6f 08 48 89 e8 48 c1 e8 03 <42> 80 3c 28 00 0f 85 19 05 00 00 48 89 5d 00 48 85 db 74 1a 48 8d [ 5558.632857][T19381] RSP: 0018:ffffc9000087ef60 EFLAGS: 00010202 [ 5558.633030][T19381] RAX: 0d6d6d6d6d6d6d6d RBX: 6b6b6b6b6b6b6b6b RCX: ffffffff8dcc6ef0 [ 5558.633319][T19381] RDX: 0000000000000000 RSI: 0000000000000008 RDI: ffff8880026e1008 [ 5558.633524][T19381] RBP: 6b6b6b6b6b6b6b6b R08: 0000000000000000 R09: 0000000000000000 [ 5558.633725][T19381] R10: ffffffff903e8a8f R11: ffffffff8e800130 R12: ffff8880026e113c [ 5558.634013][T19381] R13: dffffc0000000000 R14: ffff88800a50a000 R15: ffff8880026e1000 [ 5558.634214][T19381] FS: 00007f5f1bf0c800(0000) GS:ffff888036080000(0000) knlGS:0000000000000000 [ 5558.634534][T19381] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5558.634705][T19381] CR2: 00000000004e3868 CR3: 00000000059e2003 CR4: 0000000000772ef0 [ 5558.634908][T19381] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5558.635191][T19381] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5558.635396][T19381] PKRU: 55555554 [ 5558.635502][T19381] Call Trace: [ 5558.635609][T19381] [ 5558.635678][T19381] ? die_addr+0x41/0xa0 [ 5558.635873][T19381] ? exc_general_protection+0x14d/0x230 [ 5558.636011][T19381] ? asm_exc_general_protection+0x26/0x30 [ 5558.636147][T19381] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.636314][T19381] ? neigh_flush_dev.isra.0+0x5d0/0x650 [ 5558.636531][T19381] ? neigh_flush_dev.isra.0+0x10a/0x650 [ 5558.636670][T19381] ? lock_acquire+0x32/0xc0 [ 5558.636806][T19381] __neigh_ifdown.isra.0+0x74/0x440 [ 5558.636941][T19381] ? fib_flush+0x86/0x110 [ 5558.637044][T19381] neigh_ifdown+0x10/0x20 [ 5558.637226][T19381] fib_netdev_event+0x185/0x5a0 [ 5558.637363][T19381] notifier_call_chain+0xcd/0x150 [ 5558.637499][T19381] __netdev_upper_dev_unlink+0x115/0x220 [ 5558.637634][T19381] ? mark_lock+0x38/0x3e0 [ 5558.637736][T19381] ? __pfx___netdev_upper_dev_unlink+0x10/0x10 [ 5558.638069][T19381] netdev_upper_dev_unlink+0x71/0xa0 [ 5558.638204][T19381] ? __pfx_netdev_upper_dev_unlink+0x10/0x10 [ 5558.638371][T19381] ? mutex_is_locked+0x17/0x50 [ 5558.638588][T19381] vrf_del_slave+0x18/0x60 [ 5558.638724][T19381] do_set_master+0xb5/0x1c0 [ 5558.638858][T19381] do_setlink+0x84b/0x2210 [ 5558.638993][T19381] ? is_bpf_text_address+0x67/0x120 [ 5558.639129][T19381] ? __pfx_do_setlink+0x10/0x10 [ 5558.639348][T19381] ? is_bpf_text_address+0x71/0x120 [ 5558.639482][T19381] ? kernel_text_address+0xce/0xe0 [ 5558.639623][T19381] ? __kernel_text_address+0x12/0x40 [ 5558.639758][T19381] ? unwind_get_return_address+0x5e/0xa0 [ 5558.639973][T19381] ? __pfx_stack_trace_consume_entry+0x10/0x10 [ 5558.640140][T19381] ? arch_stack_walk+0xa2/0xf0 [ 5558.640278][T19381] ? stack_trace_save+0x94/0xd0 [ 5558.640415][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.640632][T19381] ? __pfx_validate_nla+0x10/0x10 [ 5558.640770][T19381] ? mark_lock+0x38/0x3e0 [ 5558.640873][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.641009][T19381] ? __nla_validate_parse+0x1bc/0x3d0 [ 5558.641239][T19381] __rtnl_newlink+0xaa7/0xd80 [ 5558.641374][T19381] ? hlock_class+0x4e/0x130 [ 5558.641509][T19381] ? __pfx___rtnl_newlink+0x10/0x10 [ 5558.641644][T19381] ? lockdep_hardirqs_on_prepare+0x275/0x410 [ 5558.641895][T19381] ? __create_object+0x5e/0xb0 [ 5558.642031][T19381] ? trace_kmalloc+0x2d/0xe0 [ 5558.642166][T19381] rtnl_newlink+0x63/0xa0 [ 5558.642268][T19381] rtnetlink_rcv_msg+0x2fb/0xc10 [ 5558.642403][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.642619][T19381] ? hlock_class+0x4e/0x130 [ 5558.642753][T19381] ? mark_lock+0x38/0x3e0 [ 5558.642856][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.642995][T19381] netlink_rcv_skb+0x130/0x360 [ 5558.643211][T19381] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 5558.643346][T19381] ? __pfx_netlink_rcv_skb+0x10/0x10 [ 5558.643484][T19381] ? netlink_deliver_tap+0x13e/0x340 [ 5558.643619][T19381] ? netlink_deliver_tap+0xc3/0x340 [ 5558.643754][T19381] netlink_unicast+0x44b/0x710 [ 5558.643972][T19381] ? __pfx_netlink_unicast+0x10/0x10 [ 5558.644106][T19381] ? find_held_lock+0x2c/0x110 [ 5558.644246][T19381] netlink_sendmsg+0x723/0xbe0 [ 5558.644381][T19381] ? __pfx_netlink_sendmsg+0x10/0x10 [ 5558.644595][T19381] ? __might_fault+0xc3/0x170 [ 5558.644731][T19381] ? __import_iovec+0x35d/0x5d0 [ 5558.644868][T19381] ____sys_sendmsg+0x7ac/0xa10 [ 5558.645002][T19381] ? __pfx_____sys_sendmsg+0x10/0x10 [ 5558.645216][T19381] ? __pfx_copy_msghdr_from_user+0x10/0x10 [ 5558.645387][T19381] ___sys_sendmsg+0xee/0x170 [ 5558.645524][T19381] ? __pfx_stack_trace_save+0x10/0x10 [ 5558.645659][T19381] ? __pfx____sys_sendmsg+0x10/0x10 [ 5558.645876][T19381] ? __pfx_validate_chain+0x10/0x10 [ 5558.646011][T19381] ? __pfx_slab_free_after_rcu_debug+0x10/0x10 [ 5558.646178][T19381] ? kasan_save_stack+0x34/0x50 [ 5558.646313][T19381] ? kasan_save_stack+0x24/0x50 [ 5558.646529][T19381] ? __kasan_record_aux_stack+0x8e/0xa0 [ 5558.646662][T19381] ? __call_rcu_common.constprop.0+0xa1/0x4b0 [ 5558.646833][T19381] ? __x64_sys_close+0x7c/0xd0 [ 5558.646969][T19381] ? do_syscall_64+0xc1/0x1d0 [ 5558.647186][T19381] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.647351][T19381] ? __lock_acquire+0xb3f/0x1580 [ 5558.647488][T19381] ? find_held_lock+0x2c/0x110 [ 5558.647624][T19381] ? __lock_release+0x103/0x460 [ 5558.647844][T19381] ? fdget+0x52/0x1e0 [ 5558.647948][T19381] __sys_sendmsg+0xcd/0x170 [ 5558.648083][T19381] ? __pfx___sys_sendmsg+0x10/0x10 [ 5558.648221][T19381] ? __virt_addr_valid+0x22b/0x430 [ 5558.648362][T19381] do_syscall_64+0xc1/0x1d0 [ 5558.648661][T19381] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 5558.648827][T19381] RIP: 0033:0x7f5f1c1187b7 [ 5558.648971][T19381] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 5558.649537][T19381] RSP: 002b:00007fff6c18d378 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 5558.649742][T19381] RAX: ffffffffffffffda RBX: 00007fff6c18daa0 RCX: 00007f5f1c1187b7 [ 5558.650026][T19381] RDX: 0000000000000000 RSI: 00007fff6c18d3e0 RDI: 0000000000000005 [ 5558.650228][T19381] RBP: 0000000000000002 R08: 0000000000000003 R09: 0000000000000078 [ 5558.650429][T19381] R10: 00007f5f1bfd6ef8 R11: 0000000000000246 R12: 0000000000000002 [ 5558.650717][T19381] R13: 000000006716af79 R14: 0000000000496600 R15: 0000000000000000 [ 5558.650926][T19381] [ 5558.651028][T19381] Modules linked in: ip6t_REJECT ipt_REJECT nft_compat nf_tables libcrc32c [ 5558.651374][T19381] ---[ end trace 0000000000000000 ]--- [ 5558.651512][T19381] RIP: 0010:neigh_flush_dev.isra.0+0x10a/0x650 [ 5558.651686][T19381] Code: 0f 85 ef 04 00 00 49 8d 7f 08 49 8b 1f 48 89 f8 48 c1 e8 03 42 80 3c 28 00 0f 85 cc 04 00 00 49 8b 6f 08 48 89 e8 48 c1 e8 03 <42> 80 3c 28 00 0f 85 19 05 00 00 48 89 5d 00 48 85 db 74 1a 48 8d [ 5558.652249][T19381] RSP: 0018:ffffc9000087ef60 EFLAGS: 00010202 [ 5558.652426][T19381] RAX: 0d6d6d6d6d6d6d6d RBX: 6b6b6b6b6b6b6b6b RCX: ffffffff8dcc6ef0 [ 5558.652710][T19381] RDX: 0000000000000000 RSI: 0000000000000008 RDI: ffff8880026e1008 [ 5558.652915][T19381] RBP: 6b6b6b6b6b6b6b6b R08: 0000000000000000 R09: 0000000000000000 [ 5558.653116][T19381] R10: ffffffff903e8a8f R11: ffffffff8e800130 R12: ffff8880026e113c [ 5558.653404][T19381] R13: dffffc0000000000 R14: ffff88800a50a000 R15: ffff8880026e1000 [ 5558.653606][T19381] FS: 00007f5f1bf0c800(0000) GS:ffff888036080000(0000) knlGS:0000000000000000 [ 5558.653921][T19381] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5558.654092][T19381] CR2: 00000000004e3868 CR3: 00000000059e2003 CR4: 0000000000772ef0 [ 5558.654299][T19381] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5558.654581][T19381] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5558.654781][T19381] PKRU: 55555554 [ 5558.654885][T19381] Kernel panic - not syncing: Fatal exception in interrupt [ 5558.655303][T19381] Kernel Offset: 0xa800000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 5558.655703][T19381] ---[ end Kernel panic - not syncing: Fatal exception in interrupt ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr