====================================== | [ 20.592479][ C0] #1: ffffffff9cf794e0 (rcu_read_lock){....}-{1:3}, at: unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) | [ 20.592938][ C0] #2: ffffffff9cf793c0 (rcu_callback){....}-{0:0}, at: rcu_do_batch (./include/linux/rcupdate.h:331 kernel/rcu/tree.c:2570) | [ 20.593397][ C0] | [ 20.593397][ C0] stack backtrace: [ 20.593724][ C0] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 20.593727][ C0] Call Trace: [ 20.593728][ C0] [ 20.593730][ C0] dump_stack_lvl (lib/dump_stack.c:123) [ 20.593737][ C0] print_usage_bug.part.0 (kernel/locking/lockdep.c:4048) [ 20.593742][ C0] mark_lock_irq (kernel/locking/lockdep.c:4013 kernel/locking/lockdep.c:4059 kernel/locking/lockdep.c:4270) [ 20.593749][ C0] mark_lock (kernel/locking/lockdep.c:4756) [ 20.593753][ C0] mark_usage (kernel/locking/lockdep.c:4645) [ 20.593757][ C0] __lock_acquire (kernel/locking/lockdep.c:5194) [ 20.593760][ C0] ? unwind_next_frame (./include/linux/rcupdate.h:874 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 20.593766][ C0] ? __create_object (mm/kmemleak.c:765) [ 20.593771][ C0] lock_acquire.part.0 (kernel/locking/lockdep.c:473 kernel/locking/lockdep.c:5873) [ 20.593775][ C0] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 20.593778][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 20.593784][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 20.593787][ C0] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 20.593791][ C0] _raw_spin_lock (./include/linux/spinlock_api_smp.h:134 kernel/locking/spinlock.c:154) [ 20.593795][ C0] ? xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 20.593798][ C0] xa_set_mark (lib/xarray.c:2076 lib/xarray.c:2146) [ 20.593800][ C0] ? __pfx_xa_set_mark (lib/xarray.c:2144) [ 20.593803][ C0] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 20.593808][ C0] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 20.593812][ C0] ref_tracker_dir_exit (lib/ref_tracker.c:54 lib/ref_tracker.c:223) [ 20.593816][ C0] ? mark_held_locks (kernel/locking/lockdep.c:4328) [ 20.593819][ C0] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 20.593823][ C0] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:213) [ 20.593827][ C0] ? ref_tracker_free (lib/ref_tracker.c:281) [ 20.593830][ C0] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 20.593833][ C0] ? __pfx_ref_tracker_free (lib/ref_tracker.c:281) [ 20.593836][ C0] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 20.593840][ C0] ? rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2578) [ 20.593843][ C0] ? rcu_core (kernel/rcu/tree.c:2834) [ 20.593845][ C0] ? handle_softirqs (kernel/softirq.c:580) [ 20.593850][ C0] __put_net (./include/linux/llist.h:238 ./include/linux/llist.h:265 net/core/net_namespace.c:732) [ 20.593854][ C0] ? set_track_prepare (mm/slub.c:936) [ 20.593857][ C0] ? __pfx___put_net (net/core/net_namespace.c:729) [ 20.593861][ C0] ? bpf_sk_storage_free (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/bpf_sk_storage.c:61) [ 20.593865][ C0] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2368) [ 20.593869][ C0] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 20.593872][ C0] rcu_do_batch (./include/linux/rcupdate.h:341 kernel/rcu/tree.c:2578) [ 20.593875][ C0] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 20.593879][ C0] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 20.593882][ C0] ? mark_held_locks (kernel/locking/lockdep.c:4328) [ 20.593886][ C0] ? note_gp_changes (kernel/rcu/tree.c:1326 (discriminator 1)) [ 20.593889][ C0] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 20.593894][ C0] rcu_core (kernel/rcu/tree.c:2834) [ 20.593897][ C0] handle_softirqs (kernel/softirq.c:580) [ 20.593903][ C0] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 20.593906][ C0] irq_exit_rcu (kernel/softirq.c:698) [ 20.593910][ C0] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 20.593913][ C0] [ 20.593914][ C0] [ 20.593916][ C0] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 20.593920][ C0] RIP: 0010:lock_acquire.part.0 (kernel/locking/lockdep.c:5875) [ 20.593924][ C0] Code: ff ff ff 65 0f c1 05 bd f0 15 05 83 f8 01 0f 85 3e 01 00 00 9c 58 f6 c4 02 0f 85 29 01 00 00 48 85 db 74 01 fb 48 8b 44 24 30 <65> 48 2b 05 ee af 15 05 0f 85 3a 01 00 00 48 83 c4 38 5b 5d 41 5c All code ======== 0: ff (bad) 1: ff (bad) 2: ff 65 0f jmp *0xf(%rbp) 5: c1 05 bd f0 15 05 83 roll $0x83,0x515f0bd(%rip) # 0x515f0c9 c: f8 clc d: 01 0f add %ecx,(%rdi) f: 85 3e test %edi,(%rsi) 11: 01 00 add %eax,(%rax) 13: 00 9c 58 f6 c4 02 0f add %bl,0xf02c4f6(%rax,%rbx,2) 1a: 85 29 test %ebp,(%rcx) 1c: 01 00 add %eax,(%rax) 1e: 00 48 85 add %cl,-0x7b(%rax) 21: db 74 01 fb (bad) -0x5(%rcx,%rax,1) 25: 48 8b 44 24 30 mov 0x30(%rsp),%rax 2a:* 65 48 2b 05 ee af 15 sub %gs:0x515afee(%rip),%rax # 0x515b020 <-- trapping instruction 31: 05 32: 0f 85 3a 01 00 00 jne 0x172 38: 48 83 c4 38 add $0x38,%rsp 3c: 5b pop %rbx 3d: 5d pop %rbp 3e: 41 5c pop %r12 Code starting with the faulting instruction =========================================== 0: 65 48 2b 05 ee af 15 sub %gs:0x515afee(%rip),%rax # 0x515aff6 7: 05 8: 0f 85 3a 01 00 00 jne 0x148 e: 48 83 c4 38 add $0x38,%rsp 12: 5b pop %rbx 13: 5d pop %rbp 14: 41 5c pop %r12 [ 20.593927][ C0] RSP: 0018:ffffc90000b37158 EFLAGS: 00000206 [ 20.593932][ C0] RAX: d7c131a51791a200 RBX: 0000000000000200 RCX: 0000000000000001 [ 20.593934][ C0] RDX: 0000000000000000 RSI: ffffffff9ca8de21 RDI: ffffffff9c25a220 [ 20.593936][ C0] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000001 [ 20.593937][ C0] R10: 0000000000000000 R11: ffffffff9cf794e0 R12: 0000000000000002 [ 20.593939][ C0] R13: 0000000000000000 R14: 0000000000000000 R15: ffffffff9cf794e0 [ 20.593945][ C0] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 20.593949][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 20.593953][ C0] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 20.593957][ C0] unwind_next_frame (./include/linux/rcupdate.h:842 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 20.593960][ C0] ? unwind_next_frame (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/rcupdate.h:1155 arch/x86/kernel/unwind_orc.c:479) [ 20.593963][ C0] ? do_dentry_open (fs/open.c:964) [ 20.593969][ C0] ? kmem_cache_alloc_noprof (./include/linux/kasan.h:250 mm/slub.c:4148 mm/slub.c:4197 mm/slub.c:4204) [ 20.593972][ C0] ? __alloc_object (mm/kmemleak.c:476 mm/kmemleak.c:656) [ 20.593975][ C0] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 20.593980][ C0] ? do_dentry_open (fs/open.c:964) [ 20.593983][ C0] ? kernel_text_address (kernel/extable.c:99) [ 20.593988][ C0] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83) [ 20.593993][ C0] arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 20.593999][ C0] ? do_dentry_open (fs/open.c:964) [ 20.594003][ C0] stack_trace_save (kernel/stacktrace.c:123) [ 20.594006][ C0] ? __pfx_stack_trace_save (kernel/stacktrace.c:114) [ 20.594012][ C0] set_track_prepare (mm/slub.c:936) [ 20.594014][ C0] ? __kmalloc_cache_noprof (./include/linux/kmemleak.h:43 mm/slub.c:4152 mm/slub.c:4197 mm/slub.c:4354) [ 20.594017][ C0] ? fuse_file_alloc (./include/linux/slab.h:905 ./include/linux/slab.h:1039 fs/fuse/file.c:58) [ 20.594021][ C0] ? fuse_file_open (fs/fuse/file.c:134) [ 20.594024][ C0] ? fuse_open (fs/fuse/file.c:175 fs/fuse/file.c:264) [ 20.594026][ C0] ? do_dentry_open (fs/open.c:964) [ 20.594029][ C0] ? vfs_open (fs/open.c:1094) [ 20.594032][ C0] ? backing_file_open (fs/backing-file.c:45) [ 20.594036][ C0] ? ovl_open_realfile (fs/overlayfs/file.c:51) [ 20.594039][ C0] ? ovl_open (fs/overlayfs/file.c:222) [ 20.594041][ C0] ? do_dentry_open (fs/open.c:964) [ 20.594046][ C0] __alloc_object (mm/kmemleak.c:692) [ 20.594049][ C0] __create_object (mm/kmemleak.c:765) [ 20.594053][ C0] __kmalloc_cache_noprof (./include/linux/kmemleak.h:43 mm/slub.c:4152 mm/slub.c:4197 mm/slub.c:4354) [ 20.594055][ C0] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 20.594060][ C0] fuse_file_alloc (./include/linux/slab.h:905 ./include/linux/slab.h:1039 fs/fuse/file.c:58) [ 20.594064][ C0] fuse_file_open (fs/fuse/file.c:134) [ 20.594068][ C0] fuse_open (fs/fuse/file.c:175 fs/fuse/file.c:264) [ 20.594072][ C0] do_dentry_open (fs/open.c:964) [ 20.594076][ C0] ? __pfx_fuse_open (fs/fuse/file.c:234) [ 20.594081][ C0] vfs_open (fs/open.c:1094) [ 20.594085][ C0] backing_file_open (fs/backing-file.c:45) [ 20.594089][ C0] ? inode_owner_or_capable (./include/linux/mnt_idmapping.h:87 fs/inode.c:2591) [ 20.594093][ C0] ovl_open_realfile (fs/overlayfs/file.c:51) [ 20.594097][ C0] ovl_open (fs/overlayfs/file.c:222) [ 20.594100][ C0] ? __pfx_ovl_open (fs/overlayfs/file.c:199) [ 20.594102][ C0] ? __lock_release (kernel/locking/lockdep.c:5539) [ 20.594107][ C0] do_dentry_open (fs/open.c:964) [ 20.594111][ C0] ? __pfx_ovl_open (fs/overlayfs/file.c:199) [ 20.594115][ C0] vfs_open (fs/open.c:1094) [ 20.594119][ C0] do_open (fs/namei.c:3888) [ 20.594125][ C0] path_openat (fs/namei.c:4046) [ 20.594129][ C0] ? __pfx_path_openat (fs/namei.c:4028) [ 20.594134][ C0] ? __kernel_text_address (kernel/extable.c:79) [ 20.594137][ C0] ? unwind_get_return_address (arch/x86/kernel/unwind_orc.c:369 arch/x86/kernel/unwind_orc.c:364) [ 20.594140][ C0] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83) [ 20.594144][ C0] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26) [ 20.594147][ C0] do_filp_open (fs/namei.c:4073) [ 20.594150][ C0] ? __pfx_do_filp_open (fs/namei.c:4067) [ 20.594152][ C0] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 20.594157][ C0] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 20.594163][ C0] ? __pfx_page_put_link (fs/namei.c:5478) [ 20.594167][ C0] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 20.594171][ C0] ? mark_held_locks (kernel/locking/lockdep.c:4328) [ 20.594175][ C0] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 20.594178][ C0] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 20.594183][ C0] do_open_execat (fs/exec.c:780) [ 20.594186][ C0] ? __pfx_do_open_execat (fs/exec.c:762) [ 20.594191][ C0] ? getname_kernel (./arch/x86/include/asm/atomic.h:28 ./include/linux/atomic/atomic-arch-fallback.h:503 ./include/linux/atomic/atomic-instrumented.h:68 fs/namei.c:132 fs/namei.c:271) [ 20.594195][ C0] open_exec (fs/exec.c:818) [ 20.594198][ C0] load_elf_binary (fs/binfmt_elf.c:893) [ 20.594203][ C0] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 20.594209][ C0] ? find_held_lock (kernel/locking/lockdep.c:5353) [ 20.594211][ C0] ? __pfx_load_elf_binary (fs/binfmt_elf.c:818) [ 20.594214][ C0] ? exec_binprm (fs/exec.c:1665 fs/exec.c:1697) [ 20.594220][ C0] exec_binprm (fs/exec.c:1667 fs/exec.c:1697) [ 20.594225][ C0] ? __pfx_exec_binprm (fs/exec.c:1681) [ 20.594228][ C0] ? bprm_execve (fs/exec.c:1739 fs/exec.c:1725) [ 20.594233][ C0] bprm_execve (fs/exec.c:1749 fs/exec.c:1725) [ 20.594237][ C0] do_execveat_common.isra.0 (fs/exec.c:1855) [ 20.594242][ C0] __x64_sys_execve (fs/exec.c:2000) [ 20.594246][ C0] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 20.594249][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 20.594252][ C0] RIP: 0033:0x7f15817b540b [ 20.594255][ C0] Code: c0 75 03 5f ff e7 c3 48 8b 0d f1 a9 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 80 00 00 00 00 f3 0f 1e fa b8 3b 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d c5 a9 1b 00 f7 d8 64 89 01 48 All code ======== 0: c0 75 03 5f shlb $0x5f,0x3(%rbp) 4: ff e7 jmp *%rdi 6: c3 ret 7: 48 8b 0d f1 a9 1b 00 mov 0x1ba9f1(%rip),%rcx # 0x1ba9ff e: f7 d8 neg %eax 10: 64 89 01 mov %eax,%fs:(%rcx) 13: 48 83 c8 ff or $0xffffffffffffffff,%rax 17: c3 ret 18: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 1f: f3 0f 1e fa endbr64 23: b8 3b 00 00 00 mov $0x3b,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d c5 a9 1b 00 mov 0x1ba9c5(%rip),%rcx # 0x1ba9ff 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d c5 a9 1b 00 mov 0x1ba9c5(%rip),%rcx # 0x1ba9d5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 20.594257][ C0] RSP: 002b:00007ffe673e2998 EFLAGS: 00000246 ORIG_RAX: 000000000000003b [ 20.594260][ C0] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007f15817b540b [ 20.594262][ C0] RDX: 0000562b1910b6a0 RSI: 0000562b19109550 RDI: 0000562b1912d6e0 [ 20.594263][ C0] RBP: 0000562b1912d6e0 R08: 0000562b1910af50 R09: 0000000000000020 [ 20.594265][ C0] R10: 00000000000001b6 R11: 0000000000000246 R12: 00000000ffffffff Finger prints: mark_lock_irq:mark_lock:mark_usage:__lock_acquire:_raw_spin_lock