====================================== | [ 35.170950][ T258] 1 lock held by nft/258: | [ 35.171072][ T258] #0: ffff888005c4e2c8 (&nft_net->commit_mutex){+.+.}-{3:3}, at: nf_tables_valid_genid (./include/linux/jiffies.h:101 net/netfilter/nf_tables_api.c:10954) nf_tables | [ 35.171526][ T258] | [ 35.171526][ T258] stack backtrace: [ 35.172005][ T258] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 35.172403][ T258] Call Trace: [ 35.172541][ T258] <TASK> [ 35.172653][ T258] dump_stack_lvl (lib/dump_stack.c:123) [ 35.172837][ T258] lockdep_rcu_suspicious (kernel/locking/lockdep.c:6822) [ 35.173016][ T258] nft_set_lookup.part.0 (net/netfilter/nf_tables_api.c:4467) nf_tables [ 35.173258][ T258] nf_tables_newset (net/netfilter/nf_tables_api.c:5230) nf_tables [ 35.173490][ T258] ? __pfx_nf_tables_newset (net/netfilter/nf_tables_api.c:5072) nf_tables [ 35.173729][ T258] ? find_held_lock (kernel/locking/lockdep.c:5315) [ 35.173908][ T258] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5790) [ 35.174080][ T258] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 35.174246][ T258] ? __nla_validate_parse (lib/nlattr.c:638) [ 35.174415][ T258] nfnetlink_rcv_batch (net/netfilter/nfnetlink.c:524) [ 35.174589][ T258] ? __pfx_nfnetlink_rcv_batch (net/netfilter/nfnetlink.c:373) [ 35.174753][ T258] ? rcu_read_lock_any_held (kernel/rcu/update.c:387 kernel/rcu/update.c:380) [ 35.174914][ T258] ? find_stack (lib/stackdepot.c:552 (discriminator 1)) [ 35.175090][ T258] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 35.175261][ T258] ? validate_chain (kernel/locking/lockdep.c:3797 kernel/locking/lockdep.c:3817 kernel/locking/lockdep.c:3872) [ 35.175441][ T258] ? __pfx_validate_chain (kernel/locking/lockdep.c:3860) [ 35.175621][ T258] ? find_held_lock (kernel/locking/lockdep.c:5315) [ 35.175803][ T258] ? __lock_release (kernel/locking/lockdep.c:5501) [ 35.175965][ T258] ? __nla_validate_parse (./include/net/netlink.h:1267 (discriminator 1) lib/nlattr.c:622 (discriminator 1)) [ 35.176132][ T258] nfnetlink_rcv (net/netfilter/nfnetlink.c:647 net/netfilter/nfnetlink.c:665) [ 35.176291][ T258] ? __pfx_nfnetlink_rcv (net/netfilter/nfnetlink.c:651) [ 35.176458][ T258] ? netlink_deliver_tap (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333) [ 35.176621][ T258] netlink_unicast (net/netlink/af_netlink.c:1331 net/netlink/af_netlink.c:1357) [ 35.176787][ T258] ? __pfx_netlink_unicast (net/netlink/af_netlink.c:1342) [ 35.176964][ T258] netlink_sendmsg (net/netlink/af_netlink.c:1901) [ 35.177134][ T258] ? __pfx_netlink_sendmsg (net/netlink/af_netlink.c:1820) [ 35.177307][ T258] ? __import_iovec (lib/iov_iter.c:1433 lib/iov_iter.c:1449) [ 35.177474][ T258] ____sys_sendmsg (net/socket.c:729 net/socket.c:744 net/socket.c:2607) [ 35.177637][ T258] ? __pfx_____sys_sendmsg (net/socket.c:2553) [ 35.177795][ T258] ? __pfx_copy_msghdr_from_user (net/socket.c:2533) [ 35.178005][ T258] ___sys_sendmsg (net/socket.c:2663) [ 35.178163][ T258] ? __lock_release (kernel/locking/lockdep.c:5501) [ 35.178336][ T258] ? __pfx____sys_sendmsg (net/socket.c:2650) [ 35.178505][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 35.178667][ T258] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 35.178838][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 35.178999][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 35.179166][ T258] ? do_sock_getsockopt (net/socket.c:2388) [ 35.179326][ T258] ? do_sock_setsockopt (net/socket.c:2303) [ 35.179549][ T258] ? __pfx_do_sock_getsockopt (net/socket.c:2374) [ 35.179739][ T258] ? fdget (./include/linux/atomic/atomic-arch-fallback.h:479 ./include/linux/atomic/atomic-instrumented.h:50 fs/file.c:1114 fs/file.c:1128) [ 35.179892][ T258] __sys_sendmsg (./include/linux/file.h:35 net/socket.c:2692) [ 35.180111][ T258] ? __pfx___sys_sendmsg (net/socket.c:2678) [ 35.180286][ T258] ? __pfx___sys_getsockopt (net/socket.c:2415) [ 35.180496][ T258] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 35.180669][ T258] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 35.180897][ T258] RIP: 0033:0x7f87cd7bd7b7 [ 35.181100][ T258] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 All code ======== 0: 0a 00 or (%rax),%al 2: f7 d8 neg %eax 4: 64 89 02 mov %eax,%fs:(%rdx) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b9 jmp 0xffffffffffffffc9 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2e 00 00 00 mov $0x2e,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 89 54 24 1c mov %edx,0x1c(%rsp) 3b: 48 89 74 24 10 mov %rsi,0x10(%rsp) Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 89 54 24 1c mov %edx,0x1c(%rsp) 11: 48 89 74 24 10 mov %rsi,0x10(%rsp) [ 35.181707][ T258] RSP: 002b:00007fffbe8e4928 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 35.181993][ T258] RAX: ffffffffffffffda RBX: 00007fffbe8f5b20 RCX: 00007f87cd7bd7b7 [ 35.182265][ T258] RDX: 0000000000000000 RSI: 00007fffbe8f59e0 RDI: 0000000000000005 [ 35.182530][ T258] RBP: 00007fffbe8f5ad0 R08: 00007fffbe8e490c R09: 00007fffbe8e4930 [ 35.182779][ T258] R10: 00007f87cd676708 R11: 0000000000000246 R12: 00007fffbe8f5a20 [ 35.183034][ T258] R13: 0000000000001400 R14: 0000000000000005 R15: 00007fffbe8e4940 | [ 36.661219][ T258] 1 lock held by nft/258: | [ 36.661350][ T258] #0: ffff888005c4e2c8 (&nft_net->commit_mutex){+.+.}-{3:3}, at: nf_tables_valid_genid (./include/linux/jiffies.h:101 net/netfilter/nf_tables_api.c:10954) nf_tables | [ 36.661780][ T258] | [ 36.661780][ T258] stack backtrace: [ 36.662278][ T258] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 36.662647][ T258] Call Trace: [ 36.662781][ T258] <TASK> [ 36.662877][ T258] dump_stack_lvl (lib/dump_stack.c:123) [ 36.663065][ T258] lockdep_rcu_suspicious (kernel/locking/lockdep.c:6822) [ 36.663239][ T258] nf_tables_bind_set (net/netfilter/nf_tables_api.c:5495 net/netfilter/nf_tables_api.c:5536) nf_tables [ 36.663479][ T258] ? __pfx_nf_tables_bind_set (net/netfilter/nf_tables_api.c:5510) nf_tables [ 36.663716][ T258] ? __pfx_nf_tables_bind_check_setelem (net/netfilter/nf_tables_api.c:5478) nf_tables [ 36.663985][ T258] ? nft_validate_register_store (net/netfilter/nf_tables_api.c:11167) nf_tables [ 36.664218][ T258] nft_lookup_init (net/netfilter/nft_lookup.c:155) nf_tables [ 36.664451][ T258] ? nft_ng_inc_init (net/netfilter/nft_numgen.c:77) nft_numgen [ 36.664667][ T258] nf_tables_newrule (net/netfilter/nf_tables_api.c:3328 net/netfilter/nf_tables_api.c:4152) nf_tables [ 36.664914][ T258] ? __pfx_nf_tables_newrule (net/netfilter/nf_tables_api.c:4007) nf_tables [ 36.665145][ T258] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5790) [ 36.665315][ T258] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 36.665488][ T258] ? __nla_validate_parse (lib/nlattr.c:638) [ 36.665662][ T258] nfnetlink_rcv_batch (net/netfilter/nfnetlink.c:524) [ 36.665874][ T258] ? __pfx_nfnetlink_rcv_batch (net/netfilter/nfnetlink.c:373) [ 36.666043][ T258] ? rcu_read_lock_any_held (kernel/rcu/update.c:387 kernel/rcu/update.c:380) [ 36.666211][ T258] ? find_stack (lib/stackdepot.c:552 (discriminator 1)) [ 36.666385][ T258] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 36.666550][ T258] ? validate_chain (kernel/locking/lockdep.c:3797 kernel/locking/lockdep.c:3817 kernel/locking/lockdep.c:3872) [ 36.666731][ T258] ? __pfx_validate_chain (kernel/locking/lockdep.c:3860) [ 36.666922][ T258] ? find_held_lock (kernel/locking/lockdep.c:5315) [ 36.667095][ T258] ? __lock_release (kernel/locking/lockdep.c:5501) [ 36.667264][ T258] ? __nla_validate_parse (./include/net/netlink.h:1267 (discriminator 1) lib/nlattr.c:622 (discriminator 1)) [ 36.667436][ T258] nfnetlink_rcv (net/netfilter/nfnetlink.c:647 net/netfilter/nfnetlink.c:665) [ 36.667600][ T258] ? __pfx_nfnetlink_rcv (net/netfilter/nfnetlink.c:651) [ 36.667769][ T258] ? netlink_deliver_tap (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333) [ 36.667943][ T258] netlink_unicast (net/netlink/af_netlink.c:1331 net/netlink/af_netlink.c:1357) [ 36.668114][ T258] ? __pfx_netlink_unicast (net/netlink/af_netlink.c:1342) [ 36.668288][ T258] netlink_sendmsg (net/netlink/af_netlink.c:1901) [ 36.668458][ T258] ? __pfx_netlink_sendmsg (net/netlink/af_netlink.c:1820) [ 36.668630][ T258] ? __import_iovec (lib/iov_iter.c:1433 lib/iov_iter.c:1449) [ 36.668804][ T258] ____sys_sendmsg (net/socket.c:729 net/socket.c:744 net/socket.c:2607) [ 36.668977][ T258] ? __pfx_____sys_sendmsg (net/socket.c:2553) [ 36.669141][ T258] ? __pfx_copy_msghdr_from_user (net/socket.c:2533) [ 36.669360][ T258] ___sys_sendmsg (net/socket.c:2663) [ 36.669526][ T258] ? __lock_release (kernel/locking/lockdep.c:5501) [ 36.669696][ T258] ? __pfx____sys_sendmsg (net/socket.c:2650) [ 36.669896][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 36.670084][ T258] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 36.670252][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 36.670435][ T258] ? __might_fault (mm/memory.c:6705 mm/memory.c:6698) [ 36.670606][ T258] ? do_sock_getsockopt (net/socket.c:2388) [ 36.670773][ T258] ? do_sock_setsockopt (net/socket.c:2303) [ 36.670942][ T258] ? __pfx_do_sock_getsockopt (net/socket.c:2374) [ 36.671114][ T258] ? fdget (./include/linux/atomic/atomic-arch-fallback.h:479 ./include/linux/atomic/atomic-instrumented.h:50 fs/file.c:1114 fs/file.c:1128) [ 36.671248][ T258] __sys_sendmsg (./include/linux/file.h:35 net/socket.c:2692) [ 36.671413][ T258] ? __pfx___sys_sendmsg (net/socket.c:2678) [ 36.671592][ T258] ? __pfx___sys_getsockopt (net/socket.c:2415) [ 36.671771][ T258] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 36.671943][ T258] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 36.672148][ T258] RIP: 0033:0x7f87cd7bd7b7 [ 36.672358][ T258] Code: 0a 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 All code ======== 0: 0a 00 or (%rax),%al 2: f7 d8 neg %eax 4: 64 89 02 mov %eax,%fs:(%rdx) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b9 jmp 0xffffffffffffffc9 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2e 00 00 00 mov $0x2e,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 89 54 24 1c mov %edx,0x1c(%rsp) 3b: 48 89 74 24 10 mov %rsi,0x10(%rsp) Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 89 54 24 1c mov %edx,0x1c(%rsp) 11: 48 89 74 24 10 mov %rsi,0x10(%rsp) [ 36.672937][ T258] RSP: 002b:00007fffbe8e4928 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 36.673190][ T258] RAX: ffffffffffffffda RBX: 00007fffbe8f5b20 RCX: 00007f87cd7bd7b7 [ 36.673435][ T258] RDX: 0000000000000000 RSI: 00007fffbe8f59e0 RDI: 0000000000000005 [ 36.673683][ T258] RBP: 00007fffbe8f5ad0 R08: 00007fffbe8e490c R09: 00007fffbe8e4930 [ 36.673967][ T258] R10: 00007f87cd676708 R11: 0000000000000246 R12: 00007fffbe8f5a20 Finger prints: lockdep_rcu_suspicious:nf_tables_bind_set:nft_lookup_init:nf_tables_newrule:nfnetlink_rcv_batch lockdep_rcu_suspicious:nf_tables_newset:nfnetlink_rcv_batch:nfnetlink_rcv:netlink_unicast