[ 54.945617][ T1011] u32 classifier
[ 54.945848][ T1011] input device check on
[ 54.946004][ T1011] Actions configured
[ 56.014934][ T1030] gre: GRE over IPv4 demultiplexor driver
[ 56.029657][ T1030] ip_gre: GRE over IPv4 tunneling driver
[ 57.183021][ T1060] ip (1060) used greatest stack depth: 23584 bytes left
[ 58.870353][ T1092] ip6_gre: GRE over IPv6 tunneling driver
[ 59.094633][ T50] ip6_tunnel: ip6gretap00 xmit: Local address not yet configured!
[ 62.108606][ T85] ip6_tunnel: ip6erspan00 xmit: Local address not yet configured!
[ 62.510811][ T50] ip6_tunnel: ip6erspan00 xmit: Local address not yet configured!
[ 63.158198][ T1171] test-br0: port 1(test-dummy0) entered blocking state
[ 63.158613][ T1171] test-br0: port 1(test-dummy0) entered disabled state
[ 63.158886][ T1171] test-dummy0: entered allmulticast mode
[ 63.160341][ T1171] test-dummy0: entered promiscuous mode
[ 63.262695][ T1175] test-br0: port 1(test-dummy0) entered blocking state
[ 63.263111][ T1175] test-br0: port 1(test-dummy0) entered forwarding state
[ 64.937567][ T1211] test-dummy0: left allmulticast mode
[ 64.937788][ T1211] test-dummy0: left promiscuous mode
[ 64.938083][ T1211] test-br0: port 1(test-dummy0) entered disabled state
[ 142.918436][ T3355] ip (3355) used greatest stack depth: 23112 bytes left
[ 146.960956][ T3438] MACsec IEEE 802.1AE
[ 147.927927][ T3459] Initializing XFRM netlink socket
[ 150.522209][ T3356] netdevsim netdevsim0 eni0np1: renamed from eth0
[ 152.930543][ T250] ==================================================================
[ 152.930844][ T250] BUG: KASAN: use-after-free in page_pool_item_uninit+0x100/0x130
[ 152.931106][ T250] Read of size 8 at addr ffff88800abab008 by task rtnetlink.sh/250
[ 152.931354][ T250]
[ 152.931443][ T250] CPU: 1 UID: 0 PID: 250 Comm: rtnetlink.sh Not tainted 6.13.0-rc5-virtme #1
[ 152.931736][ T250] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011
[ 152.931947][ T250] Call Trace:
[ 152.932084][ T250]
[ 152.932177][ T250] dump_stack_lvl+0x82/0xd0
[ 152.932356][ T250] print_address_description.constprop.0+0x2c/0x3b0
[ 152.932571][ T250] ? page_pool_item_uninit+0x100/0x130
[ 152.932751][ T250] print_report+0xb4/0x270
[ 152.932921][ T250] ? kasan_addr_to_slab+0x25/0x80
[ 152.933093][ T250] kasan_report+0xbd/0xf0
[ 152.933248][ T250] ? page_pool_item_uninit+0x100/0x130
[ 152.933427][ T250] page_pool_item_uninit+0x100/0x130
[ 152.933604][ T250] page_pool_release+0x44a/0x5b0
[ 152.933780][ T250] ? __pfx_autoremove_wake_function+0x10/0x10
[ 152.934005][ T250] ? __pfx_page_pool_release+0x10/0x10
[ 152.934181][ T250] ? napi_disable+0x383/0x5b0
[ 152.934371][ T250] page_pool_destroy+0x11e/0x560
[ 152.934540][ T250] nsim_stop+0x21a/0x390 [netdevsim]
[ 152.934723][ T250] __dev_close_many+0x1a0/0x2d0
[ 152.934895][ T250] ? __pfx___dev_close_many+0x10/0x10
[ 152.935062][ T250] ? __pfx_validate_chain+0x10/0x10
[ 152.935235][ T250] ? hlock_class+0x4e/0x130
[ 152.935404][ T250] ? mark_lock+0x38/0x3e0
[ 152.935534][ T250] ? hlock_class+0x4e/0x130
[ 152.935702][ T250] dev_close_many+0x202/0x650
[ 152.935871][ T250] ? __pfx_dev_close_many+0x10/0x10
[ 152.936041][ T250] unregister_netdevice_many_notify+0x8ed/0x1580
[ 152.936253][ T250] ? __mutex_trylock_common+0xfa/0x260
[ 152.936425][ T250] ? __pfx___mutex_trylock_common+0x10/0x10
[ 152.936636][ T250] ? __pfx_unregister_netdevice_many_notify+0x10/0x10
[ 152.936847][ T250] ? lock_acquire+0x32/0xc0
[ 152.937018][ T250] ? __mutex_lock+0x190/0xbc0
[ 152.937190][ T250] ? nsim_destroy+0x6b/0x5f0 [netdevsim]
[ 152.937364][ T250] ? __pfx___mutex_lock+0x10/0x10
[ 152.937532][ T250] unregister_netdevice_queue+0x2a4/0x410
[ 152.937704][ T250] ? __pfx_do_raw_spin_lock+0x10/0x10
[ 152.937872][ T250] ? __pfx_unregister_netdevice_queue+0x10/0x10
[ 152.938084][ T250] nsim_destroy+0xe8/0x5f0 [netdevsim]
[ 152.938261][ T250] __nsim_dev_port_del+0x17e/0x250 [netdevsim]
[ 152.938476][ T250] nsim_dev_reload_destroy+0xe0/0x470 [netdevsim]
[ 152.938688][ T250] nsim_drv_remove+0x51/0x1d0 [netdevsim]
[ 152.938865][ T250] device_release_driver_internal+0x3bf/0x590
[ 152.939092][ T250] ? klist_put+0xb1/0x170
[ 152.939223][ T250] bus_remove_device+0x1f1/0x3f0
[ 152.939399][ T250] device_del+0x33f/0x8c0
[ 152.939534][ T250] ? __pfx_device_del+0x10/0x10
[ 152.939707][ T250] ? lock_acquire.part.0+0xeb/0x330
[ 152.939881][ T250] ? kernfs_fop_write_iter+0x22e/0x460
[ 152.940058][ T250] device_unregister+0x17/0xb0
[ 152.940244][ T250] del_device_store+0x2f3/0x4f0 [netdevsim]
[ 152.940481][ T250] ? __pfx_del_device_store+0x10/0x10 [netdevsim]
[ 152.940709][ T250] ? __pfx_sysfs_kf_write+0x10/0x10
[ 152.940883][ T250] ? sysfs_file_ops+0x11e/0x170
[ 152.941061][ T250] ? __pfx_sysfs_kf_write+0x10/0x10
[ 152.941235][ T250] kernfs_fop_write_iter+0x2ba/0x460
[ 152.941418][ T250] vfs_write+0xa81/0x11e0
[ 152.941552][ T250] ? __pfx_vfs_write+0x10/0x10
[ 152.941727][ T250] ? __lock_release+0x103/0x460
[ 152.941906][ T250] ? do_user_addr_fault+0x972/0xe30
[ 152.942086][ T250] ? __pfx___up_read+0x10/0x10
[ 152.942262][ T250] ksys_write+0xf8/0x1d0
[ 152.942393][ T250] ? __pfx_ksys_write+0x10/0x10
[ 152.942577][ T250] ? do_user_addr_fault+0x97c/0xe30
[ 152.942750][ T250] do_syscall_64+0xc1/0x1d0
[ 152.942919][ T250] entry_SYSCALL_64_after_hwframe+0x77/0x7f
[ 152.943155][ T250] RIP: 0033:0x7f7080831b77
[ 152.943338][ T250] Code: 0b 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 48 89 54 24 18 48 89 74 24
[ 152.943953][ T250] RSP: 002b:00007ffe32604118 EFLAGS: 00000246 ORIG_RAX: 0000000000000001
[ 152.944217][ T250] RAX: ffffffffffffffda RBX: 0000000000000002 RCX: 00007f7080831b77
[ 152.944484][ T250] RDX: 0000000000000002 RSI: 0000561c1ffb0c10 RDI: 0000000000000001
[ 152.944737][ T250] RBP: 0000561c1ffb0c10 R08: 0000000000000000 R09: 00007f70808a44e0
[ 152.944986][ T250] R10: 00007f70808a43e0 R11: 0000000000000246 R12: 0000000000000002
[ 152.945268][ T250] R13: 00007f70808ed760 R14: 0000000000000002 R15: 00007f70808e89c0
[ 152.945535][ T250]
[ 152.945685][ T250]
[ 152.945776][ T250] The buggy address belongs to the physical page:
[ 152.945993][ T250] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0xabab
[ 152.946317][ T250] flags: 0x80000000000000(node=0|zone=1)
[ 152.946497][ T250] page_type: f5(slab)
[ 152.946635][ T250] raw: 0080000000000000 ffff8880010427c0 ffffea0000080a90 ffffea000040c550
[ 152.946947][ T250] raw: 0000000000000000 0000000000190019 00000001f5000000 0000000000000000
[ 152.947258][ T250] page dumped because: kasan: bad access detected
[ 152.947466][ T250]
[ 152.947556][ T250] Memory state around the buggy address:
[ 152.947721][ T250] ffff88800abaaf00: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[ 152.947970][ T250] ffff88800abaaf80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[ 152.948215][ T250] >ffff88800abab000: fc fc fa fb fc fc fc fc fc fc fc fc fc fc fc fc
[ 152.948460][ T250] ^
[ 152.948588][ T250] ffff88800abab080: fc fc fc fc fc fc fa fb fc fc fc fc fc fc fc fc
[ 152.948835][ T250] ffff88800abab100: fc fc fc fc fc fc fc fc fc fc fa fb fc fc fc fc
[ 152.949100][ T250] ==================================================================
[ 152.949575][ T250] Disabling lock debugging due to kernel taint
[ 152.949804][ T250] Oops: general protection fault, probably for non-canonical address 0xf99995999999999c: 0000 [#1] PREEMPT SMP KASAN NOPTI
[ 152.950231][ T250] KASAN: maybe wild-memory-access in range [0xcccccccccccccce0-0xcccccccccccccce7]
[ 152.950517][ T250] CPU: 1 UID: 0 PID: 250 Comm: rtnetlink.sh Tainted: G B 6.13.0-rc5-virtme #1
[ 152.950842][ T250] Tainted: [B]=BAD_PAGE
[ 152.950969][ T250] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011
[ 152.951178][ T250] RIP: 0010:page_pool_item_uninit+0x7a/0x130
[ 152.951391][ T250] Code: 9c 48 bb 00 00 00 00 00 fc ff df 48 c1 ed 03 48 01 dd 4d 8d 75 1c be 04 00 00 00 4c 89 f7 e8 ad 6d 63 fe 4c 89 f0 48 c1 e8 03 <0f> b6 14 18 4c 89 f0 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 62 41
[ 152.951961][ T250] RSP: 0018:ffffc90000b974f0 EFLAGS: 00010a06
[ 152.952170][ T250] RAX: 199999999999999c RBX: dffffc0000000000 RCX: ffffffff9b29f6e3
[ 152.952419][ T250] RDX: 0000000000000000 RSI: 0000000000000004 RDI: cccccccccccccce0
[ 152.952666][ T250] RBP: fffffbfff3924c78 R08: 0000000000000000 R09: fffffbfff3cff688
[ 152.952911][ T250] R10: ffffffff9e7fb447 R11: 205d303532542020 R12: ffff888005351220
[ 152.953177][ T250] R13: ccccccccccccccc4 R14: cccccccccccccce0 R15: 0000000000000000
[ 152.953436][ T250] FS: 00007f70806f0740(0000) GS:ffff88806d080000(0000) knlGS:0000000000000000
[ 152.953732][ T250] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[ 152.953946][ T250] CR2: 00007f708084ecb0 CR3: 00000000096c8005 CR4: 0000000000772ef0
[ 152.954200][ T250] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[ 152.954461][ T250] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
[ 152.954704][ T250] PKRU: 55555554
[ 152.954829][ T250] Call Trace:
[ 152.954954][ T250]
[ 152.955040][ T250] ? die_addr+0x41/0xa0
[ 152.955167][ T250] ? exc_general_protection+0x14d/0x230
[ 152.955333][ T250] ? asm_exc_general_protection+0x26/0x30
[ 152.955503][ T250] ? page_pool_item_uninit+0x73/0x130
[ 152.955667][ T250] ? page_pool_item_uninit+0x7a/0x130
[ 152.955832][ T250] page_pool_release+0x44a/0x5b0
[ 152.955996][ T250] ? __pfx_autoremove_wake_function+0x10/0x10
[ 152.956202][ T250] ? __pfx_page_pool_release+0x10/0x10
[ 152.956364][ T250] ? napi_disable+0x383/0x5b0
[ 152.956533][ T250] page_pool_destroy+0x11e/0x560
[ 152.956699][ T250] nsim_stop+0x21a/0x390 [netdevsim]
[ 152.956875][ T250] __dev_close_many+0x1a0/0x2d0
[ 152.957038][ T250] ? __pfx___dev_close_many+0x10/0x10
[ 152.957203][ T250] ? __pfx_validate_chain+0x10/0x10
[ 152.957369][ T250] ? hlock_class+0x4e/0x130
[ 152.957535][ T250] ? mark_lock+0x38/0x3e0
[ 152.957661][ T250] ? hlock_class+0x4e/0x130
[ 152.957827][ T250] dev_close_many+0x202/0x650
[ 152.957994][ T250] ? __pfx_dev_close_many+0x10/0x10
[ 152.958164][ T250] unregister_netdevice_many_notify+0x8ed/0x1580
[ 152.958372][ T250] ? __mutex_trylock_common+0xfa/0x260
[ 152.958536][ T250] ? __pfx___mutex_trylock_common+0x10/0x10
[ 152.958740][ T250] ? __pfx_unregister_netdevice_many_notify+0x10/0x10
[ 152.958944][ T250] ? lock_acquire+0x32/0xc0
[ 152.959129][ T250] ? __mutex_lock+0x190/0xbc0
[ 152.959300][ T250] ? nsim_destroy+0x6b/0x5f0 [netdevsim]
[ 152.959477][ T250] ? __pfx___mutex_lock+0x10/0x10
[ 152.959648][ T250] unregister_netdevice_queue+0x2a4/0x410
[ 152.959819][ T250] ? __pfx_do_raw_spin_lock+0x10/0x10
[ 152.959987][ T250] ? __pfx_unregister_netdevice_queue+0x10/0x10
[ 152.960207][ T250] nsim_destroy+0xe8/0x5f0 [netdevsim]
[ 152.960385][ T250] __nsim_dev_port_del+0x17e/0x250 [netdevsim]
[ 152.960598][ T250] nsim_dev_reload_destroy+0xe0/0x470 [netdevsim]
[ 152.960809][ T250] nsim_drv_remove+0x51/0x1d0 [netdevsim]
[ 152.960981][ T250] device_release_driver_internal+0x3bf/0x590
[ 152.961184][ T250] ? klist_put+0xb1/0x170
[ 152.961308][ T250] bus_remove_device+0x1f1/0x3f0
[ 152.961474][ T250] device_del+0x33f/0x8c0
[ 152.961601][ T250] ? __pfx_device_del+0x10/0x10
[ 152.961765][ T250] ? lock_acquire.part.0+0xeb/0x330
[ 152.961928][ T250] ? kernfs_fop_write_iter+0x22e/0x460
[ 152.962094][ T250] device_unregister+0x17/0xb0
[ 152.962261][ T250] del_device_store+0x2f3/0x4f0 [netdevsim]
[ 152.962470][ T250] ? __pfx_del_device_store+0x10/0x10 [netdevsim]
[ 152.962684][ T250] ? __pfx_sysfs_kf_write+0x10/0x10
[ 152.962846][ T250] ? sysfs_file_ops+0x11e/0x170
[ 152.963008][ T250] ? __pfx_sysfs_kf_write+0x10/0x10
[ 152.963198][ T250] kernfs_fop_write_iter+0x2ba/0x460
[ 152.963368][ T250] vfs_write+0xa81/0x11e0
[ 152.963498][ T250] ? __pfx_vfs_write+0x10/0x10
[ 152.963669][ T250] ? __lock_release+0x103/0x460
[ 152.963835][ T250] ? do_user_addr_fault+0x972/0xe30
[ 152.964010][ T250] ? __pfx___up_read+0x10/0x10
[ 152.964181][ T250] ksys_write+0xf8/0x1d0
[ 152.964322][ T250] ? __pfx_ksys_write+0x10/0x10
[ 152.964486][ T250] ? do_user_addr_fault+0x97c/0xe30
[ 152.964652][ T250] do_syscall_64+0xc1/0x1d0
[ 152.964819][ T250] entry_SYSCALL_64_after_hwframe+0x77/0x7f
[ 152.965024][ T250] RIP: 0033:0x7f7080831b77
[ 152.965195][ T250] Code: 0b 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 48 89 54 24 18 48 89 74 24
[ 152.965769][ T250] RSP: 002b:00007ffe32604118 EFLAGS: 00000246 ORIG_RAX: 0000000000000001
[ 152.966112][ T250] RAX: ffffffffffffffda RBX: 0000000000000002 RCX: 00007f7080831b77
[ 152.966367][ T250] RDX: 0000000000000002 RSI: 0000561c1ffb0c10 RDI: 0000000000000001
[ 152.966611][ T250] RBP: 0000561c1ffb0c10 R08: 0000000000000000 R09: 00007f70808a44e0
[ 152.966951][ T250] R10: 00007f70808a43e0 R11: 0000000000000246 R12: 0000000000000002
[ 152.967196][ T250] R13: 00007f70808ed760 R14: 0000000000000002 R15: 00007f70808e89c0
[ 152.967542][ T250]
[ 152.967664][ T250] Modules linked in: netdevsim psample xfrm_user macsec vxlan ip6_gre ip_gre gre cls_u32 sch_htb
[ 152.968029][ T250] ---[ end trace 0000000000000000 ]---
[ 152.968200][ T250] RIP: 0010:page_pool_item_uninit+0x7a/0x130
[ 152.968522][ T250] Code: 9c 48 bb 00 00 00 00 00 fc ff df 48 c1 ed 03 48 01 dd 4d 8d 75 1c be 04 00 00 00 4c 89 f7 e8 ad 6d 63 fe 4c 89 f0 48 c1 e8 03 <0f> b6 14 18 4c 89 f0 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 62 41
[ 152.969251][ T250] RSP: 0018:ffffc90000b974f0 EFLAGS: 00010a06
[ 152.969466][ T250] RAX: 199999999999999c RBX: dffffc0000000000 RCX: ffffffff9b29f6e3
[ 152.969718][ T250] RDX: 0000000000000000 RSI: 0000000000000004 RDI: cccccccccccccce0
[ 152.970066][ T250] RBP: fffffbfff3924c78 R08: 0000000000000000 R09: fffffbfff3cff688
[ 152.970328][ T250] R10: ffffffff9e7fb447 R11: 205d303532542020 R12: ffff888005351220
[ 152.970573][ T250] R13: ccccccccccccccc4 R14: cccccccccccccce0 R15: 0000000000000000
[ 152.970908][ T250] FS: 00007f70806f0740(0000) GS:ffff88806d080000(0000) knlGS:0000000000000000
[ 152.971193][ T250] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[ 152.971497][ T250] CR2: 00007f708084ecb0 CR3: 00000000096c8005 CR4: 0000000000772ef0
[ 152.971742][ T250] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[ 152.971987][ T250] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
[ 152.972332][ T250] PKRU: 55555554
[ 152.972458][ T250] Kernel panic - not syncing: Fatal exception
[ 152.972800][ T250] Kernel Offset: 0x17c00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff)
[ 152.973299][ T250] ---[ end Kernel panic - not syncing: Fatal exception ]---
WAIT TIMEOUT stderr
Ctrl-C stderr
Ctrl-C stderr
WAIT TIMEOUT stderr