====================================== | [ 31.908286][ T269] veth1: entered allmulticast mode | [ 31.910137][ T269] veth1: entered promiscuous mode | [ 32.069842][ C2] BUG: spinlock bad magic on CPU#2, ip/270 | [ 32.070136][ C2] lock: noop_qdisc+0x240/0x300, .magic: 00000000, .owner: ip/270, .owner_cpu: 2 [ 32.070661][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 32.071003][ C2] Call Trace: [ 32.071123][ C2] [ 32.071203][ C2] dump_stack_lvl (lib/dump_stack.c:122) [ 32.071362][ C2] do_raw_spin_unlock (kernel/locking/spinlock_debug.c:100 kernel/locking/spinlock_debug.c:141) [ 32.071517][ C2] _raw_spin_unlock (./arch/x86/include/asm/preempt.h:94 ./include/linux/spinlock_api_smp.h:143 kernel/locking/spinlock.c:186) [ 32.071670][ C2] __dev_xmit_skb (./include/net/sch_generic.h:226 ./include/net/sch_generic.h:217 net/core/dev.c:3879) [ 32.071826][ C2] ? __pfx___dev_xmit_skb (net/core/dev.c:3784) [ 32.071987][ C2] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:890 net/core/dev.c:4348) [ 32.072140][ C2] ? lock_acquire (kernel/locking/lockdep.c:5732) [ 32.072295][ C2] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:890 net/core/dev.c:4348) [ 32.072447][ C2] __dev_queue_xmit (net/core/dev.c:4389) [ 32.072603][ C2] ? __lock_release (kernel/locking/lockdep.c:5435) [ 32.072755][ C2] ? ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 32.072909][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5411) [ 32.073062][ C2] ? __pfx___dev_queue_xmit (net/core/dev.c:4332) [ 32.073217][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4273) [ 32.073370][ C2] ? eth_header (net/ethernet/eth.c:100) [ 32.073529][ C2] ? neigh_resolve_output (./include/linux/netdevice.h:3159 net/core/neighbour.c:1560 net/core/neighbour.c:1545) [ 32.073686][ C2] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 32.073838][ C2] ? igmpv3_send_cr (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 net/ipv4/igmp.c:719) [ 32.073993][ C2] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 32.074145][ C2] ? __ip_finish_output (./include/linux/skbuff.h:1666 ./include/linux/skbuff.h:4954 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 32.074297][ C2] igmp_ifc_timer_expire (net/ipv4/igmp.c:815) [ 32.074449][ C2] ? __pfx_igmp_ifc_timer_expire (net/ipv4/igmp.c:809) [ 32.074724][ C2] call_timer_fn (kernel/time/timer.c:1792) [ 32.074881][ C2] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1782) [ 32.075033][ C2] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1782) [ 32.075184][ C2] ? __pfx_call_timer_fn (kernel/time/timer.c:1769) [ 32.075420][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227) [ 32.075575][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4273) [ 32.075728][ C2] __run_timers (kernel/time/timer.c:1844 kernel/time/timer.c:2417) [ 32.075878][ C2] ? __pfx_igmp_ifc_timer_expire (net/ipv4/igmp.c:809) [ 32.076156][ C2] ? __pfx___run_timers (kernel/time/timer.c:2388) [ 32.076312][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 32.076467][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 32.076620][ C2] ? lock_acquire (kernel/locking/lockdep.c:5732) [ 32.076854][ C2] ? run_timer_softirq (kernel/time/timer.c:2428 kernel/time/timer.c:2421 kernel/time/timer.c:2437 kernel/time/timer.c:2447) [ 32.077006][ C2] run_timer_softirq (kernel/time/timer.c:2429 kernel/time/timer.c:2421 kernel/time/timer.c:2437 kernel/time/timer.c:2447) [ 32.077162][ C2] handle_softirqs (kernel/softirq.c:554) [ 32.077320][ C2] irq_exit_rcu (kernel/softirq.c:589 kernel/softirq.c:428 kernel/softirq.c:637 kernel/softirq.c:649) [ 32.077436][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1043 arch/x86/kernel/apic/apic.c:1043) [ 32.077673][ C2] [ 32.077755][ C2] [ 32.077833][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 32.078028][ C2] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 32.078230][ C2] Code: 10 e8 01 3e 8e fd 48 89 ef e8 a9 ae 8e fd 81 e3 00 02 00 00 75 1d 9c 58 f6 c4 02 75 29 48 85 db 74 01 fb 65 ff 0d 75 80 02 7c <74> 0e 5b 5d c3 cc cc cc cc e8 6f 8c b5 fd eb dc 0f 1f 44 00 00 5b All code ======== 0: 10 e8 adc %ch,%al 2: 01 3e add %edi,(%rsi) 4: 8e fd mov %ebp,%? 6: 48 89 ef mov %rbp,%rdi 9: e8 a9 ae 8e fd call 0xfffffffffd8eaeb7 e: 81 e3 00 02 00 00 and $0x200,%ebx 14: 75 1d jne 0x33 16: 9c pushf 17: 58 pop %rax 18: f6 c4 02 test $0x2,%ah 1b: 75 29 jne 0x46 1d: 48 85 db test %rbx,%rbx 20: 74 01 je 0x23 22: fb sti 23: 65 ff 0d 75 80 02 7c decl %gs:0x7c028075(%rip) # 0x7c02809f 2a:* 74 0e je 0x3a <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: e8 6f 8c b5 fd call 0xfffffffffdb58ca7 38: eb dc jmp 0x16 3a: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 3f: 5b pop %rbx Code starting with the faulting instruction =========================================== 0: 74 0e je 0x10 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: e8 6f 8c b5 fd call 0xfffffffffdb58c7d e: eb dc jmp 0xffffffffffffffec 10: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 15: 5b pop %rbx [ 32.078859][ C2] RSP: 0018:ffffc9000055faa8 EFLAGS: 00000286 [ 32.079140][ C2] RAX: 0000000000000006 RBX: 0000000000000200 RCX: 1ffffffff0e747a2 [ 32.079371][ C2] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffffff84014821 [ 32.079607][ C2] RBP: ffffffff87b864c8 R08: 0000000000000001 R09: fffffbfff0e72102 [ 32.079923][ C2] R10: ffffffff87390817 R11: 1ffff11000a3c8c8 R12: 0000000000000000 [ 32.080151][ C2] R13: ffff888005559dc8 R14: 1ffff920000abf5c R15: ffffffff87b864c8 [ 32.080384][ C2] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 32.080664][ C2] debug_object_activate (lib/debugobjects.c:728) [ 32.080819][ C2] ? __pfx_debug_object_activate (lib/debugobjects.c:696) [ 32.081009][ C2] ? __lock_release (kernel/locking/lockdep.c:5435) [ 32.081163][ C2] ? __delete_object (mm/kmemleak.c:793 (discriminator 3)) [ 32.081486][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227) [ 32.081639][ C2] ? mark_lock (kernel/locking/lockdep.c:4655 (discriminator 3)) [ 32.081756][ C2] ? __pfx_free_object_rcu (mm/kmemleak.c:503) [ 32.081910][ C2] ? __call_rcu_common.constprop.0 (kernel/rcu/rcu.h:228 kernel/rcu/tree.c:3091) [ 32.082184][ C2] __call_rcu_common.constprop.0 (kernel/rcu/rcu.h:228 kernel/rcu/tree.c:3091) [ 32.082379][ C2] kmem_cache_free (./include/linux/kmemleak.h:48 mm/slub.c:2213 mm/slub.c:4473 mm/slub.c:4548) [ 32.082532][ C2] ? exit_mmap (mm/mmap.c:3438) [ 32.082688][ C2] exit_mmap (mm/mmap.c:3438) [ 32.082894][ C2] ? __pfx_exit_mmap (mm/mmap.c:3386) [ 32.083048][ C2] ? __mutex_unlock_slowpath (./arch/x86/include/asm/atomic64_64.h:101 ./include/linux/atomic/atomic-arch-fallback.h:4329 ./include/linux/atomic/atomic-long.h:1506 ./include/linux/atomic/atomic-instrumented.h:4481 kernel/locking/mutex.c:929) [ 32.083206][ C2] mmput (kernel/fork.c:1412 kernel/fork.c:1347 kernel/fork.c:1367) [ 32.083328][ C2] exit_mm (kernel/exit.c:572) [ 32.083444][ C2] do_exit (kernel/exit.c:872) [ 32.083644][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 32.083796][ C2] ? __pfx_do_exit (kernel/exit.c:821) [ 32.083948][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 32.084103][ C2] do_group_exit (kernel/exit.c:1012) [ 32.084258][ C2] __x64_sys_exit_group (kernel/exit.c:1040) [ 32.084492][ C2] x64_sys_call (./arch/x86/include/generated/asm/syscalls_64.h:61) [ 32.084646][ C2] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 32.084805][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 32.084993][ C2] RIP: 0033:0x7f9b7c34ca8d [ 32.085234][ C2] Code: Unable to access opcode bytes at 0x7f9b7c34ca63. Code starting with the faulting instruction =========================================== [ 32.085429][ C2] RSP: 002b:00007ffd46788cc8 EFLAGS: 00000246 ORIG_RAX: 00000000000000e7 [ 32.085662][ C2] RAX: ffffffffffffffda RBX: 00007f9b7c4299c0 RCX: 00007f9b7c34ca8d [ 32.085974][ C2] RDX: 00000000000000e7 RSI: fffffffffffffe90 RDI: 0000000000000000 [ 32.086203][ C2] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000060 [ 32.086430][ C2] R10: 00007f9b7c239fa8 R11: 0000000000000246 R12: 00007f9b7c4299c0 Finger prints: do_raw_spin_unlock:_raw_spin_unlock:__dev_xmit_skb:__dev_queue_xmit:ip_finish_output2