====================================== | [ 48.057145] #PF: supervisor read access in kernel mode | [ 48.057180] #PF: error_code(0x0000) - not-present page | [ 48.057217] PGD 0 P4D 0 | [ 48.057238] Oops: Oops: 0000 [#1] SMP NOPTI [ 48.057334] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 48.057381] RIP: 0010:xfrm_lookup_with_ifid (net/xfrm/xfrm_policy.c:3181) [ 48.057422] Code: 41 57 45 89 cf 41 56 41 55 49 89 d5 41 54 49 89 fc 55 48 89 f5 53 44 89 c3 48 83 ec 40 65 48 8b 05 3a 16 96 01 48 89 44 24 38 <48> 8b 46 08 44 0f b7 30 48 85 c9 0f 84 f3 00 00 00 0f b6 41 12 48 All code ======== 0: 41 57 push %r15 2: 45 89 cf mov %r9d,%r15d 5: 41 56 push %r14 7: 41 55 push %r13 9: 49 89 d5 mov %rdx,%r13 c: 41 54 push %r12 e: 49 89 fc mov %rdi,%r12 11: 55 push %rbp 12: 48 89 f5 mov %rsi,%rbp 15: 53 push %rbx 16: 44 89 c3 mov %r8d,%ebx 19: 48 83 ec 40 sub $0x40,%rsp 1d: 65 48 8b 05 3a 16 96 mov %gs:0x196163a(%rip),%rax # 0x196165f 24: 01 25: 48 89 44 24 38 mov %rax,0x38(%rsp) 2a:* 48 8b 46 08 mov 0x8(%rsi),%rax <-- trapping instruction 2e: 44 0f b7 30 movzwl (%rax),%r14d 32: 48 85 c9 test %rcx,%rcx 35: 0f 84 f3 00 00 00 je 0x12e 3b: 0f b6 41 12 movzbl 0x12(%rcx),%eax 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 8b 46 08 mov 0x8(%rsi),%rax 4: 44 0f b7 30 movzwl (%rax),%r14d 8: 48 85 c9 test %rcx,%rcx b: 0f 84 f3 00 00 00 je 0x104 11: 0f b6 41 12 movzbl 0x12(%rcx),%eax 15: 48 rex.W [ 48.057541] RSP: 0018:ffffa2348013c958 EFLAGS: 00010282 [ 48.057575] RAX: ffdf27e4aea1b400 RBX: 0000000000000006 RCX: ffff9461c105aa00 [ 48.057626] RDX: ffffa2348013ca20 RSI: 0000000000000000 RDI: ffff9461c3e66900 [ 48.057677] RBP: 0000000000000000 R08: 0000000000000006 R09: 0000000000000000 [ 48.057728] R10: 0000000000000040 R11: 0000000000000040 R12: ffff9461c3e66900 [ 48.057779] R13: ffffa2348013ca20 R14: 0000000000000000 R15: 0000000000000000 [ 48.057831] FS: 0000000000000000(0000) GS:ffff946262ac1000(0000) knlGS:0000000000000000 [ 48.057888] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 48.057934] CR2: 0000000000000008 CR3: 000000002d648002 CR4: 0000000000772ef0 [ 48.057986] PKRU: 55555554 [ 48.058001] Call Trace: [ 48.058018] [ 48.058041] ? ip6_dst_lookup_tail.constprop.0 (net/ipv6/ip6_output.c:1231) [ 48.058079] xfrm_lookup_route (net/xfrm/xfrm_policy.c:3351) [ 48.058105] udp_tunnel6_dst_lookup (net/ipv6/ip6_udp_tunnel.c:165 net/ipv6/ip6_udp_tunnel.c:135) [ 48.058144] ? fib6_table_lookup (net/ipv6/route.c:895 net/ipv6/route.c:933 net/ipv6/route.c:2233) [ 48.058186] geneve_xmit (drivers/net/geneve.c:963 drivers/net/geneve.c:1045) geneve [ 48.058229] ? dev_hard_start_xmit (./include/linux/netdevice.h:5219 ./include/linux/netdevice.h:5228 net/core/dev.c:3827 net/core/dev.c:3843) [ 48.058270] dev_hard_start_xmit (./include/linux/netdevice.h:5219 ./include/linux/netdevice.h:5228 net/core/dev.c:3827 net/core/dev.c:3843) [ 48.058297] __dev_queue_xmit (net/core/dev.h:370 net/core/dev.c:4714) [ 48.058327] ? kmalloc_reserve (net/core/skbuff.c:581 (discriminator 2)) [ 48.058358] ? __alloc_skb (net/core/skbuff.c:685) [ 48.058389] ? eth_header (net/ethernet/eth.c:85) [ 48.058415] ? arp_create (./include/linux/netdevice.h:3412 net/ipv4/arp.c:578) [ 48.058447] arp_xmit (net/ipv4/arp.c:668) [ 48.058478] arp_solicit (net/ipv4/arp.c:392) [ 48.058504] neigh_probe (net/core/neighbour.c:1064) [ 48.058536] neigh_timer_handler (net/core/neighbour.c:1158) [ 48.058566] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1072) [ 48.058600] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1072) [ 48.058634] call_timer_fn (kernel/time/timer.c:1747) [ 48.058665] __run_timers (kernel/time/timer.c:1799 kernel/time/timer.c:2372) [ 48.058696] ? rcu_sched_clock_irq (kernel/rcu/tree.c:2679 (discriminator 1)) [ 48.058736] ? sched_balance_rq (kernel/sched/fair.c:11783) [ 48.058767] timer_expire_remote (kernel/time/timer.c:2385 kernel/time/timer.c:2376 kernel/time/timer.c:2135) [ 48.058798] tmigr_handle_remote_up (kernel/time/timer_migration.c:944 kernel/time/timer_migration.c:1035) [ 48.058841] ? sched_balance_trigger (kernel/sched/fair.c:12958) [ 48.058881] ? perf_event_task_tick (./arch/x86/include/asm/current.h:23 kernel/events/core.c:4515) [ 48.058921] ? __pfx_tmigr_handle_remote_up (kernel/time/timer_migration.c:1005) [ 48.058960] __walk_groups.isra.0 (kernel/time/timer_migration.c:533) [ 48.058991] tmigr_handle_remote (kernel/time/timer_migration.c:1096) [ 48.059023] ? ktime_get (kernel/time/timekeeping.c:251 (discriminator 3) kernel/time/timekeeping.c:360 (discriminator 3) kernel/time/timekeeping.c:778 (discriminator 3)) [ 48.059054] ? __pfx_clockevents_tick_resume (kernel/time/clockevents.c:175) [ 48.059089] handle_softirqs (./arch/x86/include/asm/jump_label.h:36 ./include/trace/events/irq.h:142 kernel/softirq.c:580) [ 48.059120] irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680 kernel/softirq.c:696) [ 48.059150] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 48.059191] [ 48.059208] [ 48.059225] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 48.059265] RIP: 0010:pv_native_safe_halt (arch/x86/kernel/paravirt.c:82) [ 48.059305] Code: bd 74 00 e9 c3 dd 00 00 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 66 90 0f 00 2d 75 a1 16 00 fb f4 cc cc cc cc 66 2e 0f 1f 84 00 00 00 00 00 66 90 90 90 90 90 90 All code ======== 0: bd 74 00 e9 c3 mov $0xc3e90074,%ebp 5: dd 00 fldl (%rax) 7: 00 0f add %cl,(%rdi) 9: 1f (bad) a: 00 90 90 90 90 90 add %dl,-0x6f6f6f70(%rax) 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: f3 0f 1e fa endbr64 1f: 66 90 xchg %ax,%ax 21: 0f 00 2d 75 a1 16 00 verw 0x16a175(%rip) # 0x16a19d 28: fb sti 29: f4 hlt 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 36: 00 00 00 39: 66 90 xchg %ax,%ax 3b: 90 nop 3c: 90 nop 3d: 90 nop 3e: 90 nop 3f: 90 nop Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) c: 00 00 00 f: 66 90 xchg %ax,%ax 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop [ 48.059423] RSP: 0018:ffffa234800afee0 EFLAGS: 00000252 [ 48.059458] RAX: ffff946262ac1000 RBX: ffff9461c1310000 RCX: 00000000000006e0 [ 48.059509] RDX: 0000000000000003 RSI: ffffffff9b1b0bd0 RDI: 00000000001bf8fc [ 48.059560] RBP: 0000000000000003 R08: 00000000001bf8fc R09: 0000000000000001 [ 48.059611] R10: 0000000000000001 R11: 0000000000000001 R12: 0000000000000000 [ 48.059662] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000 [ 48.059715] default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:749) [ 48.059744] default_idle_call (./include/linux/cpuidle.h:144 kernel/sched/idle.c:118) [ 48.059770] do_idle (kernel/sched/idle.c:186 kernel/sched/idle.c:325) [ 48.059797] cpu_startup_entry (kernel/sched/idle.c:422 (discriminator 1)) [ 48.059828] start_secondary (arch/x86/kernel/smpboot.c:315) Finger prints: xfrm_lookup_with_ifid:xfrm_lookup_route:udp_tunnel6_dst_lookup:geneve_xmit:dev_hard_start_xmit