[ 13.271474][ T1] loop: module loaded [ 13.286347][ T1] scsi host0: ata_piix [ 13.289945][ T1] scsi host1: ata_piix [ 13.291501][ T1] ata1: PATA max MWDMA2 cmd 0x1f0 ctl 0x3f6 bmdma 0xc080 irq 14 lpm-pol 0 [ 13.291840][ T1] ata2: PATA max MWDMA2 cmd 0x170 ctl 0x376 bmdma 0xc088 irq 15 lpm-pol 0 [ 13.305091][ T1] i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 [ 13.307105][ T1] serio: i8042 KBD port at 0x60,0x64 irq 1 [ 13.307491][ T1] serio: i8042 AUX port at 0x60,0x64 irq 12 [ 13.316676][ T1] rtc_cmos 00:04: RTC can wake from S4 [ 13.323711][ T1] rtc_cmos 00:04: registered as rtc0 [ 13.324179][ T1] rtc_cmos 00:04: setting system clock to 2024-03-22T00:17:01 UTC (1711066621) [ 13.325836][ T1] rtc_cmos 00:04: alarms up to one day, y3k, 242 bytes nvram, hpet irqs [ 13.331027][ T51] input: ImExPS/2 Generic Explorer Mouse as /devices/platform/i8042/serio1/input/input2 [ 13.335855][ T51] input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input3 [ 13.348116][ T1] i6300ESB timer 0000:00:03.0: initialized. heartbeat=30 sec (nowayout=0) [ 13.350015][ T1] device-mapper: ioctl: 4.48.0-ioctl (2023-03-01) initialised: dm-devel@lists.linux.dev [ 13.361857][ T1] NET: Registered PF_INET6 protocol family [ 13.367843][ T1] Segment Routing with IPv6 [ 13.368406][ T1] In-situ OAM (IOAM) with IPv6 [ 13.368839][ T1] sit: IPv6, IPv4 and MPLS over IPv4 tunneling driver [ 13.372693][ T1] NET: Registered PF_PACKET protocol family [ 13.372968][ T1] 9pnet: Installing 9P2000 support [ 13.376233][ T1] Key type dns_resolver registered [ 13.381452][ T1] IPI shorthand broadcast: enabled [ 13.448902][ T66] ata2: found unknown device (class 0) [ 13.449923][ T66] ata2.00: ATAPI: QEMU DVD-ROM, 2.5+, max UDMA/100 [ 13.466894][ T57] scsi 1:0:0:0: CD-ROM QEMU QEMU DVD-ROM 2.5+ PQ: 0 ANSI: 5 [ 13.484752][ T57] scsi 1:0:0:0: Attached scsi generic sg0 type 5 [ 13.644521][ T1] sched_clock: Marking stable (13634006058, 9783015)->(13663577534, -19788461) [ 13.645815][ T1] Timer migration: 1 hierarchy levels; 8 children per group; 1 crossnode level [ 13.646936][ T1] registered taskstats version 1 [ 13.649406][ T1] Loading compiled-in X.509 certificates [ 13.747097][ T1] kmemleak: Kernel memory leak detector initialized (mem pool available: 14917) [ 13.747112][ T75] kmemleak: Automatic memory scanning thread started [ 13.747456][ T1] page_owner is disabled [ 13.749147][ T1] PM: Magic number: 0:351:254 [ 13.749465][ T1] printk: legacy console [netcon0] enabled [ 13.749711][ T1] netconsole: network logging started [ 13.750870][ T1] ALSA device list: [ 13.751049][ T1] No soundcards found. [ 13.752600][ T1] md: Skipping autodetection of RAID arrays. (raid=autodetect will force) [ 13.753410][ T1] 9pnet_virtio: no channels available for device [ 13.757732][ T1] ================================================================== [ 13.757960][ T1] BUG: KASAN: slab-use-after-free in v9fs_stat2inode_dotl+0x9d6/0xb80 [ 13.758166][ T1] Read of size 8 at addr ffff888003c37250 by task swapper/0/1 [ 13.758367][ T1] [ 13.758444][ T1] CPU: 1 PID: 1 Comm: swapper/0 Not tainted 6.8.0-virtme #1 [ 13.758656][ T1] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 13.758975][ T1] Call Trace: [ 13.759084][ T1] [ 13.759158][ T1] dump_stack_lvl+0x82/0xd0 [ 13.759301][ T1] print_address_description.constprop.0+0x2c/0x3b0 [ 13.759482][ T1] ? v9fs_stat2inode_dotl+0x9d6/0xb80 [ 13.759624][ T1] print_report+0xb4/0x270 [ 13.759764][ T1] ? kasan_addr_to_slab+0x4e/0x90 [ 13.759916][ T1] kasan_report+0xbd/0xf0 [ 13.760024][ T1] ? v9fs_stat2inode_dotl+0x9d6/0xb80 [ 13.760167][ T1] v9fs_stat2inode_dotl+0x9d6/0xb80 [ 13.760313][ T1] v9fs_fid_iget_dotl+0x18c/0x210 [ 13.760458][ T1] v9fs_mount+0x3fe/0x7d0 [ 13.760564][ T1] ? __pfx_v9fs_mount+0x10/0x10 [ 13.760702][ T1] ? vfs_parse_fs_string+0xdb/0x130 [ 13.760874][ T1] ? __pfx_vfs_parse_fs_string+0x10/0x10 [ 13.761106][ T1] ? __pfx_v9fs_mount+0x10/0x10 [ 13.761250][ T1] legacy_get_tree+0x107/0x200 [ 13.761397][ T1] vfs_get_tree+0x8a/0x2e0 [ 13.761542][ T1] do_new_mount+0x27d/0x5e0 [ 13.761685][ T1] ? __pfx_do_new_mount+0x10/0x10 [ 13.761836][ T1] ? __pfx___debug_check_no_obj_freed+0x10/0x10 [ 13.762011][ T1] ? __virt_addr_valid+0x227/0x420 [ 13.762155][ T1] path_mount+0x271/0x14f0 [ 13.762299][ T1] ? __pfx_path_mount+0x10/0x10 [ 13.762442][ T1] ? kmem_cache_free+0xd7/0x220 [ 13.762584][ T1] ? kern_path+0x3d/0x50 [ 13.762693][ T1] init_mount+0x9d/0xf0 [ 13.762807][ T1] ? __pfx_init_mount+0x10/0x10 [ 13.762950][ T1] do_mount_root+0xbc/0x330 [ 13.763091][ T1] mount_root_generic+0x22c/0x470 [ 13.763234][ T1] ? __pfx_mount_root_generic+0x10/0x10 [ 13.763376][ T1] ? mount_root+0x25b/0x2f0 [ 13.763517][ T1] prepare_namespace+0xa5/0x2d0 [ 13.763658][ T1] ? __pfx_prepare_namespace+0x10/0x10 [ 13.763805][ T1] ? __pfx_kernel_init+0x10/0x10 [ 13.763949][ T1] kernel_init+0x20/0x200 [ 13.764057][ T1] ? __pfx_kernel_init+0x10/0x10 [ 13.764196][ T1] ret_from_fork+0x31/0x70 [ 13.764336][ T1] ? __pfx_kernel_init+0x10/0x10 [ 13.764475][ T1] ret_from_fork_asm+0x1a/0x30 [ 13.764620][ T1] [ 13.764727][ T1] [ 13.764805][ T1] Allocated by task 1: [ 13.764912][ T1] kasan_save_stack+0x24/0x50 [ 13.765055][ T1] kasan_save_track+0x14/0x30 [ 13.765199][ T1] __kasan_kmalloc+0x7f/0x90 [ 13.765338][ T1] p9_client_getattr_dotl+0x4c/0x1a0 [ 13.765486][ T1] v9fs_fid_iget_dotl+0xca/0x210 [ 13.765627][ T1] v9fs_mount+0x3fe/0x7d0 [ 13.765734][ T1] legacy_get_tree+0x107/0x200 [ 13.765885][ T1] vfs_get_tree+0x8a/0x2e0 [ 13.766024][ T1] do_new_mount+0x27d/0x5e0 [ 13.766181][ T1] path_mount+0x271/0x14f0 [ 13.766326][ T1] init_mount+0x9d/0xf0 [ 13.766433][ T1] do_mount_root+0xbc/0x330 [ 13.766572][ T1] mount_root_generic+0x22c/0x470 [ 13.766721][ T1] prepare_namespace+0xa5/0x2d0 [ 13.766874][ T1] kernel_init+0x20/0x200 [ 13.766980][ T1] ret_from_fork+0x31/0x70 [ 13.767130][ T1] ret_from_fork_asm+0x1a/0x30 [ 13.767271][ T1] [ 13.767354][ T1] Freed by task 1: [ 13.767461][ T1] kasan_save_stack+0x24/0x50 [ 13.767603][ T1] kasan_save_track+0x14/0x30 [ 13.767769][ T1] kasan_save_free_info+0x3b/0x60 [ 13.767920][ T1] __kasan_slab_free+0xf4/0x180 [ 13.768070][ T1] kfree+0xd3/0x230 [ 13.768184][ T1] v9fs_fid_iget_dotl+0x15e/0x210 [ 13.768337][ T1] v9fs_mount+0x3fe/0x7d0 [ 13.768445][ T1] legacy_get_tree+0x107/0x200 [ 13.768594][ T1] vfs_get_tree+0x8a/0x2e0 [ 13.768746][ T1] do_new_mount+0x27d/0x5e0 [ 13.768896][ T1] path_mount+0x271/0x14f0 [ 13.769039][ T1] init_mount+0x9d/0xf0 [ 13.769152][ T1] do_mount_root+0xbc/0x330 [ 13.769306][ T1] mount_root_generic+0x22c/0x470 [ 13.769452][ T1] prepare_namespace+0xa5/0x2d0 [ 13.769602][ T1] kernel_init+0x20/0x200 [ 13.769717][ T1] ret_from_fork+0x31/0x70 [ 13.769866][ T1] ret_from_fork_asm+0x1a/0x30 [ 13.770018][ T1] [ 13.770093][ T1] The buggy address belongs to the object at ffff888003c37250 [ 13.770093][ T1] which belongs to the cache kmalloc-192 of size 192 [ 13.770454][ T1] The buggy address is located 0 bytes inside of [ 13.770454][ T1] freed 192-byte region [ffff888003c37250, ffff888003c37310) [ 13.770806][ T1] [ 13.770882][ T1] The buggy address belongs to the physical page: [ 13.771074][ T1] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0xffff888003c37388 pfn:0x3c36 [ 13.771371][ T1] head: order:1 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 13.771591][ T1] flags: 0x80000000000a40(workingset|slab|head|node=0|zone=1) [ 13.771807][ T1] page_type: 0xffffffff() [ 13.771916][ T1] raw: 0080000000000a40 ffff888001042c40 ffff888001040a88 ffff888001040a88 [ 13.772174][ T1] raw: ffff888003c37388 00000000001a0010 00000001ffffffff 0000000000000000 [ 13.772431][ T1] head: 0080000000000a40 ffff888001042c40 ffff888001040a88 ffff888001040a88 [ 13.772690][ T1] head: ffff888003c37388 00000000001a0010 00000001ffffffff 0000000000000000 [ 13.772954][ T1] head: 0080000000000001 ffffea00000f0d81 dead000000000122 00000000ffffffff [ 13.773200][ T1] head: 0000000200000000 0000000000000000 00000000ffffffff 0000000000000000 [ 13.773452][ T1] page dumped because: kasan: bad access detected [ 13.773626][ T1] [ 13.773694][ T1] Memory state around the buggy address: [ 13.773837][ T1] ffff888003c37100: fc fc fc 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 13.774045][ T1] ffff888003c37180: 00 00 00 00 00 00 00 00 00 fc fc fc fc fc fc fc [ 13.774252][ T1] >ffff888003c37200: fc fc fc fc fc fc fc fc fc fc fa fb fb fb fb fb [ 13.774457][ T1] ^ [ 13.774630][ T1] ffff888003c37280: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 13.774838][ T1] ffff888003c37300: fb fb fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 13.775040][ T1] ================================================================== [ 13.775336][ T1] Disabling lock debugging due to kernel taint [ 13.775666][ T1] VFS: Mounted root (9p filesystem) readonly on device 0:20. [ 13.776724][ T1] devtmpfs: mounted [ 13.817451][ T1] Freeing unused kernel image (initmem) memory: 6420K [ 13.817693][ T1] Write protecting the kernel read-only data: 59392k [ 13.818563][ T1] Freeing unused kernel image (rodata/data gap) memory: 972K [ 13.818882][ T1] Run /home/virtme/virtme-ng/virtme/guest/virtme-init as init process [ 19.248854][ T172] request_module: modprobe binfmt-0000 cannot be processed, kmod busy with 50 threads for more than 5 seconds now [ 19.249426][ T172] kworker/u20:13 (172) used greatest stack depth: 27376 bytes left [ 19.255756][ T148] kworker/u17:9 (148) used greatest stack depth: 27080 bytes left [ 19.316213][ T76] kworker/u17:0 (76) used greatest stack depth: 27032 bytes left [ 19.316428][ T1] Kernel panic - not syncing: Requested init /home/virtme/virtme-ng/virtme/guest/virtme-init failed (error -8). [ 19.316435][ T1] CPU: 0 PID: 1 Comm: swapper/0 Tainted: G B 6.8.0-virtme #1 [ 19.316441][ T1] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 19.316445][ T1] Call Trace: [ 19.316447][ T1] [ 19.316451][ T1] panic+0x506/0x5b0 [ 19.316461][ T1] ? __pfx_panic+0x10/0x10 [ 19.316466][ T1] ? kmem_cache_free+0xd7/0x220 [ 19.316470][ T1] ? kernel_execve+0x32a/0x460 [ 19.316477][ T1] kernel_init+0xee/0x200 [ 19.317947][ T1] ? __pfx_kernel_init+0x10/0x10 [ 19.318086][ T1] ret_from_fork+0x31/0x70 [ 19.318204][ T1] ? __pfx_kernel_init+0x10/0x10 [ 19.318319][ T1] ret_from_fork_asm+0x1a/0x30 [ 19.318436][ T1] [ 19.318605][ T1] Kernel Offset: 0xda00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 19.318881][ T1] ---[ end Kernel panic - not syncing: Requested init /home/virtme/virtme-ng/virtme/guest/virtme-init failed (error -8). ]--- WAIT TIMEOUT stderr