====================================== | [ 35.490972][ T278] veth02: entered allmulticast mode | [ 35.494681][ T278] veth02: entered promiscuous mode | [ 35.817821][ C3] BUG: spinlock bad magic on CPU#3, ip/279 | [ 35.818087][ C3] lock: noop_qdisc+0x240/0x300, .magic: 00000000, .owner: ip/279, .owner_cpu: 3 [ 35.818612][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 35.818950][ C3] Call Trace: [ 35.819073][ C3] [ 35.819162][ C3] dump_stack_lvl (lib/dump_stack.c:122) [ 35.819321][ C3] do_raw_spin_unlock (kernel/locking/spinlock_debug.c:100 kernel/locking/spinlock_debug.c:141) [ 35.819488][ C3] _raw_spin_unlock (./arch/x86/include/asm/preempt.h:94 ./include/linux/spinlock_api_smp.h:143 kernel/locking/spinlock.c:186) [ 35.819641][ C3] __dev_xmit_skb (./include/net/sch_generic.h:226 ./include/net/sch_generic.h:217 net/core/dev.c:3879) [ 35.819798][ C3] ? __pfx___dev_xmit_skb (net/core/dev.c:3784) [ 35.819970][ C3] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:890 net/core/dev.c:4348) [ 35.820110][ C3] ? lock_acquire (kernel/locking/lockdep.c:5732) [ 35.820248][ C3] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:890 net/core/dev.c:4348) [ 35.820393][ C3] __dev_queue_xmit (net/core/dev.c:4389) [ 35.820531][ C3] ? __lock_release (kernel/locking/lockdep.c:5435) [ 35.820668][ C3] ? ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 35.820808][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5411) [ 35.820949][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4332) [ 35.821088][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4273) [ 35.821225][ C3] ? eth_header (net/ethernet/eth.c:100) [ 35.821365][ C3] ? neigh_resolve_output (./include/linux/netdevice.h:3159 net/core/neighbour.c:1560 net/core/neighbour.c:1545) [ 35.821514][ C3] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 35.821663][ C3] ? igmpv3_send_cr (./include/linux/rcupdate.h:336 ./include/linux/rcupdate.h:869 net/ipv4/igmp.c:719) [ 35.821818][ C3] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 35.821972][ C3] ? __ip_finish_output (./include/linux/skbuff.h:1666 ./include/linux/skbuff.h:4954 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 35.822123][ C3] igmp_ifc_timer_expire (net/ipv4/igmp.c:815) [ 35.822283][ C3] ? __pfx_igmp_ifc_timer_expire (net/ipv4/igmp.c:809) [ 35.822497][ C3] call_timer_fn (kernel/time/timer.c:1792) [ 35.822648][ C3] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1782) [ 35.822845][ C3] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1782) [ 35.823014][ C3] ? __pfx_call_timer_fn (kernel/time/timer.c:1769) [ 35.823168][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:227) [ 35.823328][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4273) [ 35.823479][ C3] __run_timers (kernel/time/timer.c:1844 kernel/time/timer.c:2417) [ 35.823647][ C3] ? __pfx_igmp_ifc_timer_expire (net/ipv4/igmp.c:809) [ 35.823834][ C3] ? __pfx___run_timers (kernel/time/timer.c:2388) [ 35.824003][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 35.824153][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 35.824330][ C3] ? lock_acquire (kernel/locking/lockdep.c:5732) [ 35.824482][ C3] ? run_timer_softirq (kernel/time/timer.c:2428 kernel/time/timer.c:2421 kernel/time/timer.c:2437 kernel/time/timer.c:2447) [ 35.824631][ C3] run_timer_softirq (kernel/time/timer.c:2429 kernel/time/timer.c:2421 kernel/time/timer.c:2437 kernel/time/timer.c:2447) [ 35.824782][ C3] handle_softirqs (kernel/softirq.c:554) [ 35.824936][ C3] irq_exit_rcu (kernel/softirq.c:589 kernel/softirq.c:428 kernel/softirq.c:637 kernel/softirq.c:649) [ 35.825049][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1043 arch/x86/kernel/apic/apic.c:1043) [ 35.825201][ C3] [ 35.825282][ C3] [ 35.825358][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 35.825551][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 35.825748][ C3] Code: 10 e8 01 3e 8e fd 48 89 ef e8 a9 ae 8e fd 81 e3 00 02 00 00 75 1d 9c 58 f6 c4 02 75 29 48 85 db 74 01 fb 65 ff 0d 75 80 c2 4e <74> 0e 5b 5d c3 cc cc cc cc e8 6f 8c b5 fd eb dc 0f 1f 44 00 00 5b All code ======== 0: 10 e8 adc %ch,%al 2: 01 3e add %edi,(%rsi) 4: 8e fd mov %ebp,%? 6: 48 89 ef mov %rbp,%rdi 9: e8 a9 ae 8e fd call 0xfffffffffd8eaeb7 e: 81 e3 00 02 00 00 and $0x200,%ebx 14: 75 1d jne 0x33 16: 9c pushf 17: 58 pop %rax 18: f6 c4 02 test $0x2,%ah 1b: 75 29 jne 0x46 1d: 48 85 db test %rbx,%rbx 20: 74 01 je 0x23 22: fb sti 23: 65 ff 0d 75 80 c2 4e decl %gs:0x4ec28075(%rip) # 0x4ec2809f 2a:* 74 0e je 0x3a <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: e8 6f 8c b5 fd call 0xfffffffffdb58ca7 38: eb dc jmp 0x16 3a: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 3f: 5b pop %rbx Code starting with the faulting instruction =========================================== 0: 74 0e je 0x10 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: e8 6f 8c b5 fd call 0xfffffffffdb58c7d e: eb dc jmp 0xffffffffffffffec 10: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 15: 5b pop %rbx [ 35.826272][ C3] RSP: 0018:ffffc900005cfbd8 EFLAGS: 00000286 [ 35.826467][ C3] RAX: 0000000000000006 RBX: 0000000000000200 RCX: 1ffffffff68f47a2 [ 35.826695][ C3] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffffffb1414821 [ 35.826920][ C3] RBP: ffffffffb29410a0 R08: 0000000000000001 R09: fffffbfff68f2102 [ 35.827143][ C3] R10: ffffffffb4790817 R11: ffffc900005cf891 R12: 0000000000000000 [ 35.827367][ C3] R13: 0000000000000246 R14: ffffea00001e4b00 R15: 0000000000000000 [ 35.827593][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 35.827788][ C3] delete_object_full (mm/kmemleak.c:812) [ 35.827940][ C3] kmem_cache_free (./include/linux/kmemleak.h:48 mm/slub.c:2213 mm/slub.c:4473 mm/slub.c:4548) [ 35.828092][ C3] ? exit_mmap (mm/mmap.c:3438) [ 35.828245][ C3] exit_mmap (mm/mmap.c:3438) [ 35.828360][ C3] ? __pfx_exit_mmap (mm/mmap.c:3386) [ 35.828508][ C3] ? __mutex_unlock_slowpath (./arch/x86/include/asm/atomic64_64.h:101 ./include/linux/atomic/atomic-arch-fallback.h:4329 ./include/linux/atomic/atomic-long.h:1506 ./include/linux/atomic/atomic-instrumented.h:4481 kernel/locking/mutex.c:929) [ 35.828661][ C3] mmput (kernel/fork.c:1412 kernel/fork.c:1347 kernel/fork.c:1367) [ 35.828776][ C3] exit_mm (kernel/exit.c:572) [ 35.828891][ C3] do_exit (kernel/exit.c:872) [ 35.829010][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 35.829163][ C3] ? __pfx_do_exit (kernel/exit.c:821) [ 35.829313][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 35.829485][ C3] do_group_exit (kernel/exit.c:1012) [ 35.829754][ C3] __x64_sys_exit_group (kernel/exit.c:1040) [ 35.829906][ C3] x64_sys_call (./arch/x86/include/generated/asm/syscalls_64.h:61) [ 35.830084][ C3] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 35.830248][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 35.830542][ C3] RIP: 0033:0x7fb878e59a8d [ 35.830704][ C3] Code: Unable to access opcode bytes at 0x7fb878e59a63. Code starting with the faulting instruction =========================================== [ 35.830904][ C3] RSP: 002b:00007fff607c4c18 EFLAGS: 00000246 ORIG_RAX: 00000000000000e7 [ 35.831346][ C3] RAX: ffffffffffffffda RBX: 00007fb878f369c0 RCX: 00007fb878e59a8d [ 35.831603][ C3] RDX: 00000000000000e7 RSI: fffffffffffffe90 RDI: 0000000000000000 [ 35.831842][ C3] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000060 [ 35.832083][ C3] R10: 00007fb878d46fa8 R11: 0000000000000246 R12: 00007fb878f369c0 Finger prints: do_raw_spin_unlock:_raw_spin_unlock:__dev_xmit_skb:__dev_queue_xmit:ip_finish_output2