====================================== | [ 15.607984][ C3] #3: ffffffffa7d74ae0 (rcu_read_lock){....}-{1:3}, at: unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) | [ 15.608407][ C3] #4: ffffffffa7d749c0 (rcu_callback){....}-{0:0}, at: rcu_do_batch (./include/linux/rcupdate.h:331 kernel/rcu/tree.c:2562) | [ 15.608822][ C3] | [ 15.608822][ C3] stack backtrace: [ 15.609120][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 15.609122][ C3] Call Trace: [ 15.609124][ C3] [ 15.609126][ C3] dump_stack_lvl (lib/dump_stack.c:123) [ 15.609132][ C3] print_usage_bug.part.0 (kernel/locking/lockdep.c:4046) [ 15.609138][ C3] mark_lock_irq (kernel/locking/lockdep.c:4011 kernel/locking/lockdep.c:4057 kernel/locking/lockdep.c:4268) [ 15.609143][ C3] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 15.609147][ C3] ? save_trace (kernel/locking/lockdep.c:594) [ 15.609151][ C3] mark_lock (kernel/locking/lockdep.c:4754) [ 15.609155][ C3] mark_usage (kernel/locking/lockdep.c:4643) [ 15.609159][ C3] __lock_acquire (kernel/locking/lockdep.c:5189) [ 15.609164][ C3] lock_acquire.part.0 (kernel/locking/lockdep.c:472 kernel/locking/lockdep.c:5868) [ 15.609167][ C3] ? simple_pin_fs (fs/libfs.c:1066) [ 15.609170][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.609175][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5829) [ 15.609177][ C3] ? simple_pin_fs (fs/libfs.c:1066) [ 15.609181][ C3] _raw_spin_lock (./include/linux/spinlock_api_smp.h:134 kernel/locking/spinlock.c:154) [ 15.609184][ C3] ? simple_pin_fs (fs/libfs.c:1066) [ 15.609186][ C3] simple_pin_fs (fs/libfs.c:1066) [ 15.609189][ C3] debugfs_remove (fs/debugfs/inode.c:805 fs/debugfs/inode.c:799) [ 15.609192][ C3] ref_tracker_dir_exit (lib/ref_tracker.c:423 lib/ref_tracker.c:195) [ 15.609197][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:253) [ 15.609200][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 15.609206][ C3] ? rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 15.609209][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:189) [ 15.609212][ C3] ? irq_exit_rcu (kernel/softirq.c:698) [ 15.609215][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 15.609219][ C3] ? asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 15.609222][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5870) [ 15.609224][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:842 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.609227][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 15.609231][ C3] ? stack_trace_save (kernel/stacktrace.c:123) [ 15.609235][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.609240][ C3] ? kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.609244][ C3] ? kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.609248][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.609255][ C3] __put_net (net/core/net_namespace.c:732) [ 15.609259][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 15.609263][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2568) [ 15.609266][ C3] rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 15.609270][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.609274][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2492) [ 15.609277][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4326) [ 15.609281][ C3] ? note_gp_changes (kernel/rcu/tree.c:1324 (discriminator 1)) [ 15.609285][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4473) [ 15.609290][ C3] rcu_core (kernel/rcu/tree.c:2826) [ 15.609294][ C3] handle_softirqs (kernel/softirq.c:579) [ 15.609298][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 15.609301][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 15.609303][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 15.609307][ C3] [ 15.609308][ C3] [ 15.609309][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 15.609312][ C3] RIP: 0010:lock_acquire.part.0 (kernel/locking/lockdep.c:5870) [ 15.609315][ C3] Code: ff ff ff 65 0f c1 05 ed 2d 13 05 83 f8 01 0f 85 3e 01 00 00 9c 58 f6 c4 02 0f 85 29 01 00 00 48 85 db 74 01 fb 48 8b 44 24 30 <65> 48 2b 05 5e f1 12 05 0f 85 3a 01 00 00 48 83 c4 38 5b 5d 41 5c All code ======== 0: ff (bad) 1: ff (bad) 2: ff 65 0f jmp *0xf(%rbp) 5: c1 05 ed 2d 13 05 83 roll $0x83,0x5132ded(%rip) # 0x5132df9 c: f8 clc d: 01 0f add %ecx,(%rdi) f: 85 3e test %edi,(%rsi) 11: 01 00 add %eax,(%rax) 13: 00 9c 58 f6 c4 02 0f add %bl,0xf02c4f6(%rax,%rbx,2) 1a: 85 29 test %ebp,(%rcx) 1c: 01 00 add %eax,(%rax) 1e: 00 48 85 add %cl,-0x7b(%rax) 21: db 74 01 fb (bad) -0x5(%rcx,%rax,1) 25: 48 8b 44 24 30 mov 0x30(%rsp),%rax 2a:* 65 48 2b 05 5e f1 12 sub %gs:0x512f15e(%rip),%rax # 0x512f190 <-- trapping instruction 31: 05 32: 0f 85 3a 01 00 00 jne 0x172 38: 48 83 c4 38 add $0x38,%rsp 3c: 5b pop %rbx 3d: 5d pop %rbp 3e: 41 5c pop %r12 Code starting with the faulting instruction =========================================== 0: 65 48 2b 05 5e f1 12 sub %gs:0x512f15e(%rip),%rax # 0x512f166 7: 05 8: 0f 85 3a 01 00 00 jne 0x148 e: 48 83 c4 38 add $0x38,%rsp 12: 5b pop %rbx 13: 5d pop %rbp 14: 41 5c pop %r12 [ 15.609318][ C3] RSP: 0018:ffffc90000b57270 EFLAGS: 00000206 [ 15.609321][ C3] RAX: 02eaa252c6858000 RBX: 0000000000000200 RCX: 0000000000000001 [ 15.609324][ C3] RDX: 0000000000000000 RSI: ffffffffa7870c0b RDI: ffffffffa7051260 [ 15.609326][ C3] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000001 [ 15.609327][ C3] R10: 0000000000000078 R11: ffffffffa7d74ae0 R12: 0000000000000002 [ 15.609329][ C3] R13: 0000000000000000 R14: 0000000000000000 R15: ffffffffa7d74ae0 [ 15.609335][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.609338][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5829) [ 15.609341][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.609345][ C3] unwind_next_frame (./include/linux/rcupdate.h:842 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.609349][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.609352][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.609356][ C3] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 15.609361][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.609363][ C3] ? kernel_text_address (kernel/extable.c:99) [ 15.609368][ C3] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83) [ 15.609372][ C3] arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 15.609377][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.609381][ C3] stack_trace_save (kernel/stacktrace.c:123) [ 15.609384][ C3] ? __pfx_stack_trace_save (kernel/stacktrace.c:114) [ 15.609389][ C3] ? kasan_save_stack (mm/kasan/common.c:49) [ 15.609392][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.609395][ C3] kasan_save_stack (mm/kasan/common.c:48) [ 15.609398][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.609401][ C3] ? kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.609404][ C3] ? kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.609407][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.609410][ C3] ? unlink_anon_vmas (./include/linux/rmap.h:117 mm/rmap.c:444) [ 15.609413][ C3] ? free_pgtables (mm/memory.c:392) [ 15.609417][ C3] ? exit_mmap (mm/mmap.c:1297) [ 15.609419][ C3] ? mmput (kernel/fork.c:1447 kernel/fork.c:1382 kernel/fork.c:1402) [ 15.609423][ C3] ? exec_mmap (fs/exec.c:1014) [ 15.609426][ C3] ? begin_new_exec (fs/exec.c:1264) [ 15.609429][ C3] ? load_elf_binary (fs/binfmt_elf.c:1003) [ 15.609434][ C3] ? exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.609436][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.609438][ C3] ? entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 15.609440][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.609445][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.609451][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.609454][ C3] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.609457][ C3] ? __lock_release (kernel/locking/lockdep.c:5534) [ 15.609461][ C3] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.609464][ C3] ? __virt_addr_valid (./arch/x86/include/asm/preempt.h:104 ./include/linux/rcupdate.h:955 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.609467][ C3] kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.609470][ C3] kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.609474][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.609478][ C3] __put_anon_vma (mm/rmap.c:2757) [ 15.609481][ C3] unlink_anon_vmas (./include/linux/rmap.h:117 mm/rmap.c:444) [ 15.609486][ C3] free_pgtables (mm/memory.c:392) [ 15.609492][ C3] ? __pfx_free_pgtables (mm/memory.c:349) [ 15.609495][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5829) [ 15.609497][ C3] ? exit_mmap (./include/linux/seqlock.h:431 ./include/linux/mmap_lock.h:82 ./include/linux/mmap_lock.h:129 mm/mmap.c:1292) [ 15.609500][ C3] ? down_write (./arch/x86/include/asm/preempt.h:104 kernel/locking/rwsem.c:1307 kernel/locking/rwsem.c:1313 kernel/locking/rwsem.c:1578) [ 15.609503][ C3] ? __pfx_down_write (kernel/locking/rwsem.c:1575) [ 15.609508][ C3] exit_mmap (mm/mmap.c:1297) [ 15.609512][ C3] ? __pfx_exit_mmap (mm/mmap.c:1259) [ 15.609517][ C3] ? __mutex_unlock_slowpath (./arch/x86/include/asm/atomic64_64.h:101 ./include/linux/atomic/atomic-arch-fallback.h:4329 ./include/linux/atomic/atomic-long.h:1506 ./include/linux/atomic/atomic-instrumented.h:4481 kernel/locking/mutex.c:924) [ 15.609524][ C3] mmput (kernel/fork.c:1447 kernel/fork.c:1382 kernel/fork.c:1402) [ 15.609529][ C3] exec_mmap (fs/exec.c:1014) [ 15.609533][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.609537][ C3] begin_new_exec (fs/exec.c:1264) [ 15.609541][ C3] load_elf_binary (fs/binfmt_elf.c:1003) [ 15.609547][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.609552][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.609555][ C3] ? __pfx_load_elf_binary (fs/binfmt_elf.c:825) [ 15.609559][ C3] ? exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.609563][ C3] exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.609567][ C3] ? __pfx_exec_binprm (fs/exec.c:1794) [ 15.609570][ C3] ? bprm_execve (fs/exec.c:1852 fs/exec.c:1838) [ 15.609574][ C3] bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.609577][ C3] do_execveat_common.isra.0 (fs/exec.c:1968) [ 15.609582][ C3] __x64_sys_execve (fs/exec.c:2113) [ 15.609585][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 15.609588][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 15.609591][ C3] RIP: 0033:0x7fed3b18a40b [ 15.609597][ C3] Code: Unable to access opcode bytes at 0x7fed3b18a3e1. Code starting with the faulting instruction =========================================== [ 15.609599][ C3] RSP: 002b:00007ffd6faf2148 EFLAGS: 00000246 ORIG_RAX: 000000000000003b [ 15.609602][ C3] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007fed3b18a40b [ 15.609604][ C3] RDX: 00005628a4a18640 RSI: 00005628a4a0bd90 RDI: 00005628a4a25a00 [ 15.609605][ C3] RBP: 00005628a4a25a00 R08: 00005628a4a1fa40 R09: 0000000000000020 [ 15.609607][ C3] R10: 00000000000001b6 R11: 0000000000000246 R12: 00000000ffffffff [ 15.609609][ C3] R13: 00005628a4a0bd90 R14: 00005628a4a18640 R15: 00005628a4a07660 | [ 15.646115][ C3] RCU nest depth: 1, expected: 0 | [ 15.646475][ C3] INFO: lockdep is turned off. | [ 15.646707][ C3] Preemption disabled at: | [ 15.646708][ C3] handle_softirqs (kernel/softirq.c:553) [ 15.647155][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 15.647156][ C3] Call Trace: [ 15.647158][ C3] [ 15.647159][ C3] dump_stack_lvl (lib/dump_stack.c:123) [ 15.647166][ C3] __might_resched (kernel/sched/core.c:8819) [ 15.647171][ C3] down_write (./include/linux/kernel.h:73 kernel/locking/rwsem.c:1576) [ 15.647176][ C3] ? __pfx_down_write (kernel/locking/rwsem.c:1575) [ 15.647179][ C3] ? simple_recursive_removal (./include/linux/dcache.h:345 fs/libfs.c:610) [ 15.647184][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.647189][ C3] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 15.647194][ C3] simple_recursive_removal (./include/linux/dcache.h:409 ./include/linux/dcache.h:424 ./include/linux/dcache.h:434 fs/libfs.c:616) [ 15.647197][ C3] ? __pfx_remove_one (fs/debugfs/inode.c:780) [ 15.647201][ C3] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 15.647205][ C3] debugfs_remove (fs/debugfs/inode.c:806 fs/debugfs/inode.c:799) [ 15.647208][ C3] ref_tracker_dir_exit (lib/ref_tracker.c:423 lib/ref_tracker.c:195) [ 15.647213][ C3] ? __pfx_ref_tracker_free (lib/ref_tracker.c:253) [ 15.647216][ C3] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 15.647221][ C3] ? rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 15.647225][ C3] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:189) [ 15.647228][ C3] ? irq_exit_rcu (kernel/softirq.c:698) [ 15.647231][ C3] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 15.647235][ C3] ? asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 15.647238][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5870) [ 15.647241][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:842 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.647246][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 15.647249][ C3] ? stack_trace_save (kernel/stacktrace.c:123) [ 15.647254][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.647258][ C3] ? kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.647262][ C3] ? kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.647266][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.647272][ C3] __put_net (net/core/net_namespace.c:732) [ 15.647276][ C3] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 15.647279][ C3] ? rcu_do_batch (kernel/rcu/tree.c:2568) [ 15.647283][ C3] rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 15.647286][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.647291][ C3] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2492) [ 15.647295][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4326) [ 15.647298][ C3] ? note_gp_changes (kernel/rcu/tree.c:1324 (discriminator 1)) [ 15.647302][ C3] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4473) [ 15.647307][ C3] rcu_core (kernel/rcu/tree.c:2826) [ 15.647310][ C3] handle_softirqs (kernel/softirq.c:579) [ 15.647315][ C3] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 15.647317][ C3] irq_exit_rcu (kernel/softirq.c:698) [ 15.647320][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 15.647323][ C3] [ 15.647324][ C3] [ 15.647326][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 15.647329][ C3] RIP: 0010:lock_acquire.part.0 (kernel/locking/lockdep.c:5870) [ 15.647332][ C3] Code: ff ff ff 65 0f c1 05 ed 2d 13 05 83 f8 01 0f 85 3e 01 00 00 9c 58 f6 c4 02 0f 85 29 01 00 00 48 85 db 74 01 fb 48 8b 44 24 30 <65> 48 2b 05 5e f1 12 05 0f 85 3a 01 00 00 48 83 c4 38 5b 5d 41 5c All code ======== 0: ff (bad) 1: ff (bad) 2: ff 65 0f jmp *0xf(%rbp) 5: c1 05 ed 2d 13 05 83 roll $0x83,0x5132ded(%rip) # 0x5132df9 c: f8 clc d: 01 0f add %ecx,(%rdi) f: 85 3e test %edi,(%rsi) 11: 01 00 add %eax,(%rax) 13: 00 9c 58 f6 c4 02 0f add %bl,0xf02c4f6(%rax,%rbx,2) 1a: 85 29 test %ebp,(%rcx) 1c: 01 00 add %eax,(%rax) 1e: 00 48 85 add %cl,-0x7b(%rax) 21: db 74 01 fb (bad) -0x5(%rcx,%rax,1) 25: 48 8b 44 24 30 mov 0x30(%rsp),%rax 2a:* 65 48 2b 05 5e f1 12 sub %gs:0x512f15e(%rip),%rax # 0x512f190 <-- trapping instruction 31: 05 32: 0f 85 3a 01 00 00 jne 0x172 38: 48 83 c4 38 add $0x38,%rsp 3c: 5b pop %rbx 3d: 5d pop %rbp 3e: 41 5c pop %r12 Code starting with the faulting instruction =========================================== 0: 65 48 2b 05 5e f1 12 sub %gs:0x512f15e(%rip),%rax # 0x512f166 7: 05 8: 0f 85 3a 01 00 00 jne 0x148 e: 48 83 c4 38 add $0x38,%rsp 12: 5b pop %rbx 13: 5d pop %rbp 14: 41 5c pop %r12 [ 15.647334][ C3] RSP: 0018:ffffc90000b57270 EFLAGS: 00000206 [ 15.647338][ C3] RAX: 02eaa252c6858000 RBX: 0000000000000200 RCX: 0000000000000001 [ 15.647339][ C3] RDX: 0000000000000000 RSI: ffffffffa7870c0b RDI: ffffffffa7051260 [ 15.647341][ C3] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000001 [ 15.647343][ C3] R10: 0000000000000078 R11: ffffffffa7d74ae0 R12: 0000000000000002 [ 15.647344][ C3] R13: 0000000000000000 R14: 0000000000000000 R15: ffffffffa7d74ae0 [ 15.647350][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.647354][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5829) [ 15.647356][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.647360][ C3] unwind_next_frame (./include/linux/rcupdate.h:842 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.647364][ C3] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 15.647367][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.647372][ C3] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 15.647377][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.647379][ C3] ? kernel_text_address (kernel/extable.c:99) [ 15.647383][ C3] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83) [ 15.647387][ C3] arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 15.647392][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.647395][ C3] stack_trace_save (kernel/stacktrace.c:123) [ 15.647399][ C3] ? __pfx_stack_trace_save (kernel/stacktrace.c:114) [ 15.647403][ C3] ? kasan_save_stack (mm/kasan/common.c:49) [ 15.647406][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.647410][ C3] kasan_save_stack (mm/kasan/common.c:48) [ 15.647413][ C3] ? kasan_save_stack (mm/kasan/common.c:48) [ 15.647416][ C3] ? kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.647418][ C3] ? kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.647422][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.647424][ C3] ? unlink_anon_vmas (./include/linux/rmap.h:117 mm/rmap.c:444) [ 15.647427][ C3] ? free_pgtables (mm/memory.c:392) [ 15.647431][ C3] ? exit_mmap (mm/mmap.c:1297) [ 15.647434][ C3] ? mmput (kernel/fork.c:1447 kernel/fork.c:1382 kernel/fork.c:1402) [ 15.647439][ C3] ? exec_mmap (fs/exec.c:1014) [ 15.647442][ C3] ? begin_new_exec (fs/exec.c:1264) [ 15.647444][ C3] ? load_elf_binary (fs/binfmt_elf.c:1003) [ 15.647448][ C3] ? exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.647450][ C3] ? bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.647452][ C3] ? entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 15.647455][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.647460][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.647466][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.647469][ C3] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.647472][ C3] ? __lock_release (kernel/locking/lockdep.c:5534) [ 15.647475][ C3] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.647478][ C3] ? __virt_addr_valid (./arch/x86/include/asm/preempt.h:104 ./include/linux/rcupdate.h:955 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 15.647482][ C3] kasan_record_aux_stack (mm/kasan/generic.c:548) [ 15.647485][ C3] kmem_cache_free (mm/slub.c:2343 mm/slub.c:4642 mm/slub.c:4744) [ 15.647489][ C3] ? __put_anon_vma (mm/rmap.c:2757) [ 15.647493][ C3] __put_anon_vma (mm/rmap.c:2757) [ 15.647499][ C3] unlink_anon_vmas (./include/linux/rmap.h:117 mm/rmap.c:444) [ 15.647504][ C3] free_pgtables (mm/memory.c:392) [ 15.647509][ C3] ? __pfx_free_pgtables (mm/memory.c:349) [ 15.647512][ C3] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5829) [ 15.647514][ C3] ? exit_mmap (./include/linux/seqlock.h:431 ./include/linux/mmap_lock.h:82 ./include/linux/mmap_lock.h:129 mm/mmap.c:1292) [ 15.647518][ C3] ? down_write (./arch/x86/include/asm/preempt.h:104 kernel/locking/rwsem.c:1307 kernel/locking/rwsem.c:1313 kernel/locking/rwsem.c:1578) [ 15.647520][ C3] ? __pfx_down_write (kernel/locking/rwsem.c:1575) [ 15.647525][ C3] exit_mmap (mm/mmap.c:1297) [ 15.647528][ C3] ? __pfx_exit_mmap (mm/mmap.c:1259) [ 15.647534][ C3] ? __mutex_unlock_slowpath (./arch/x86/include/asm/atomic64_64.h:101 ./include/linux/atomic/atomic-arch-fallback.h:4329 ./include/linux/atomic/atomic-long.h:1506 ./include/linux/atomic/atomic-instrumented.h:4481 kernel/locking/mutex.c:924) [ 15.647541][ C3] mmput (kernel/fork.c:1447 kernel/fork.c:1382 kernel/fork.c:1402) [ 15.647546][ C3] exec_mmap (fs/exec.c:1014) [ 15.647550][ C3] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 15.647554][ C3] begin_new_exec (fs/exec.c:1264) [ 15.647558][ C3] load_elf_binary (fs/binfmt_elf.c:1003) [ 15.647564][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 15.647569][ C3] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 15.647572][ C3] ? __pfx_load_elf_binary (fs/binfmt_elf.c:825) [ 15.647576][ C3] ? exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.647580][ C3] exec_binprm (fs/exec.c:1778 fs/exec.c:1810) [ 15.647584][ C3] ? __pfx_exec_binprm (fs/exec.c:1794) [ 15.647587][ C3] ? bprm_execve (fs/exec.c:1852 fs/exec.c:1838) [ 15.647591][ C3] bprm_execve (fs/exec.c:1862 fs/exec.c:1838) [ 15.647594][ C3] do_execveat_common.isra.0 (fs/exec.c:1968) [ 15.647598][ C3] __x64_sys_execve (fs/exec.c:2113) [ 15.647602][ C3] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 15.647605][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 15.647608][ C3] RIP: 0033:0x7fed3b18a40b [ 15.647612][ C3] Code: Unable to access opcode bytes at 0x7fed3b18a3e1. Code starting with the faulting instruction =========================================== [ 15.647614][ C3] RSP: 002b:00007ffd6faf2148 EFLAGS: 00000246 ORIG_RAX: 000000000000003b [ 15.647616][ C3] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007fed3b18a40b [ 15.647618][ C3] RDX: 00005628a4a18640 RSI: 00005628a4a0bd90 RDI: 00005628a4a25a00 [ 15.647620][ C3] RBP: 00005628a4a25a00 R08: 00005628a4a1fa40 R09: 0000000000000020 [ 15.647622][ C3] R10: 00000000000001b6 R11: 0000000000000246 R12: 00000000ffffffff [ 15.647623][ C3] R13: 00005628a4a0bd90 R14: 00005628a4a18640 R15: 00005628a4a07660 | [ 17.462652][ C2] INFO: lockdep is turned off. | [ 17.462836][ C2] Preemption disabled at: | [ 17.462838][ C2] 0x0 | [ 17.463179][ C2] Tainted: [W]=WARN [ 17.463181][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 17.463183][ C2] Call Trace: [ 17.463186][ C2] [ 17.463188][ C2] dump_stack_lvl (lib/dump_stack.c:123) [ 17.463199][ C2] __might_resched (kernel/sched/core.c:8819) [ 17.463207][ C2] down_write (./include/linux/kernel.h:73 kernel/locking/rwsem.c:1576) [ 17.463213][ C2] ? __pfx_down_write (kernel/locking/rwsem.c:1575) [ 17.463216][ C2] ? simple_recursive_removal (./include/linux/dcache.h:345 fs/libfs.c:610) [ 17.463222][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 17.463230][ C2] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 17.463236][ C2] simple_recursive_removal (./include/linux/dcache.h:409 ./include/linux/dcache.h:424 ./include/linux/dcache.h:434 fs/libfs.c:616) [ 17.463239][ C2] ? __pfx_remove_one (fs/debugfs/inode.c:780) [ 17.463245][ C2] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 17.463250][ C2] debugfs_remove (fs/debugfs/inode.c:806 fs/debugfs/inode.c:799) [ 17.463253][ C2] ref_tracker_dir_exit (lib/ref_tracker.c:423 lib/ref_tracker.c:195) [ 17.463260][ C2] ? __pfx_ref_tracker_free (lib/ref_tracker.c:253) [ 17.463263][ C2] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 17.463270][ C2] ? rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 17.463275][ C2] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:189) [ 17.463278][ C2] ? irq_exit_rcu (kernel/softirq.c:698) [ 17.463283][ C2] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 17.463288][ C2] ? asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 17.463293][ C2] ? pv_native_safe_halt (arch/x86/kernel/paravirt.c:81) [ 17.463296][ C2] ? default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:748) [ 17.463299][ C2] ? default_idle_call (./include/linux/cpuidle.h:143 kernel/sched/idle.c:118) [ 17.463301][ C2] ? cpuidle_idle_call (kernel/sched/idle.c:186) [ 17.463307][ C2] ? do_idle (kernel/sched/idle.c:325) [ 17.463310][ C2] ? cpu_startup_entry (kernel/sched/idle.c:422 (discriminator 1)) [ 17.463314][ C2] ? start_secondary (arch/x86/kernel/smpboot.c:203 arch/x86/kernel/smpboot.c:283) [ 17.463320][ C2] ? common_startup_64 (arch/x86/kernel/head_64.S:419) [ 17.463325][ C2] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 17.463330][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 17.463335][ C2] __put_net (net/core/net_namespace.c:732) [ 17.463339][ C2] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2366) [ 17.463343][ C2] ? rcu_do_batch (kernel/rcu/tree.c:2568) [ 17.463346][ C2] rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2570) [ 17.463351][ C2] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2492) [ 17.463356][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40) [ 17.463362][ C2] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 17.463368][ C2] rcu_core (kernel/rcu/tree.c:2826) [ 17.463373][ C2] handle_softirqs (kernel/softirq.c:579) [ 17.463378][ C2] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 17.463381][ C2] irq_exit_rcu (kernel/softirq.c:698) [ 17.463383][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 17.463387][ C2] [ 17.463388][ C2] [ 17.463389][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 17.463392][ C2] RIP: 0010:pv_native_safe_halt (arch/x86/kernel/paravirt.c:81) [ 17.463397][ C2] Code: 60 b8 00 e9 c3 57 02 00 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 66 90 0f 00 2d c3 75 13 00 fb f4 cc cc cc cc 66 2e 0f 1f 84 00 00 00 00 00 66 90 90 90 90 90 90 All code ======== 0: 60 (bad) 1: b8 00 e9 c3 57 mov $0x57c3e900,%eax 6: 02 00 add (%rax),%al 8: 0f 1f 00 nopl (%rax) b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: f3 0f 1e fa endbr64 1f: 66 90 xchg %ax,%ax 21: 0f 00 2d c3 75 13 00 verw 0x1375c3(%rip) # 0x1375eb 28: fb sti 29: f4 hlt 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 36: 00 00 00 39: 66 90 xchg %ax,%ax 3b: 90 nop 3c: 90 nop 3d: 90 nop 3e: 90 nop 3f: 90 nop Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) c: 00 00 00 f: 66 90 xchg %ax,%ax 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop [ 17.463400][ C2] RSP: 0018:ffffc90000147de8 EFLAGS: 00000246 [ 17.463404][ C2] RAX: 0000000000000002 RBX: 1ffff92000028fc1 RCX: ffffffffa6d5ba19 [ 17.463407][ C2] RDX: ffffed1006c2667b RSI: ffffffffa70511e0 RDI: ffffffffa458633f [ 17.463408][ C2] RBP: 0000000000000000 R08: 0000000000000000 R09: ffffed1006c2667a [ 17.463410][ C2] R10: ffff8880361333d3 R11: ffff888007bf2858 R12: 0000000000000000 [ 17.463412][ C2] R13: ffff888001bf2340 R14: dffffc0000000000 R15: 0000000000000000 [ 17.463416][ C2] ? ct_kernel_exit.constprop.0 (kernel/context_tracking.c:146) [ 17.463419][ C2] ? cpuidle_idle_call (kernel/sched/idle.c:186) [ 17.463424][ C2] default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:748) [ 17.463427][ C2] default_idle_call (./include/linux/cpuidle.h:143 kernel/sched/idle.c:118) [ 17.463429][ C2] cpuidle_idle_call (kernel/sched/idle.c:186) [ 17.463433][ C2] ? __pfx_cpuidle_idle_call (kernel/sched/idle.c:168) [ 17.463438][ C2] ? tsc_verify_tsc_adjust (arch/x86/kernel/tsc_sync.c:59) [ 17.463443][ C2] do_idle (kernel/sched/idle.c:325) [ 17.463447][ C2] cpu_startup_entry (kernel/sched/idle.c:422 (discriminator 1)) [ 17.463451][ C2] start_secondary (arch/x86/kernel/smpboot.c:203 arch/x86/kernel/smpboot.c:283) [ 17.463455][ C2] ? __pfx_start_secondary (arch/x86/kernel/smpboot.c:233) Finger prints: __might_resched:down_write:simple_recursive_removal:debugfs_remove:ref_tracker_dir_exit mark_lock_irq:mark_lock:mark_usage:__lock_acquire:_raw_spin_lock handle_softirqs:dump_stack_lvl:__might_resched:down_write:simple_recursive_removal