[ 2.154455] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 2.154598] #PF: supervisor write access in kernel mode [ 2.154646] #PF: error_code(0x0002) - not-present page [ 2.154697] PGD 4ec4067 P4D 4ec4067 PUD 4ec5067 PMD 0 [ 2.154747] Oops: Oops: 0002 [#1] SMP [ 2.154785] CPU: 3 UID: 0 PID: 228 Comm: packetdrill Not tainted 6.18.0-rc5-virtme #1 PREEMPT(voluntary) [ 2.154878] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 2.154941] RIP: 0010:work_grab_pending+0x2f/0x1b0 [ 2.154996] Code: 83 e6 01 41 57 41 56 4c 8d 77 20 41 55 41 54 41 89 f4 55 48 89 d5 53 48 89 fb 9c 58 fa 48 89 45 00 45 85 e4 0f 85 8a 00 00 00 48 0f ba 2b 00 41 0f 92 c5 72 0e 5b 44 89 e8 5d 41 5c 41 5d 41 [ 2.155170] RSP: 0018:ffffaa4f4058fcb8 EFLAGS: 00010046 [ 2.155220] RAX: 0000000000000246 RBX: 0000000000000000 RCX: 00000000fffb740c [ 2.155307] RDX: ffffaa4f4058fcf0 RSI: 0000000000000000 RDI: 0000000000000000 [ 2.155380] RBP: ffffaa4f4058fcf0 R08: 0000000000000000 R09: 0000000000000290 [ 2.155457] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 [ 2.155533] R13: ffffaa4f4058fde8 R14: 0000000000000020 R15: 0000000000000000 [ 2.155611] FS: 000000002351a3c0(0000) GS:ffff95d51ad66000(0000) knlGS:0000000000000000 [ 2.155691] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2.155759] CR2: 0000000000000000 CR3: 0000000004e71006 CR4: 0000000000772ef0 [ 2.155835] PKRU: 55555554 [ 2.155858] Call Trace: [ 2.155886] [ 2.155912] __cancel_work+0x29/0xe0 [ 2.155956] ? dev_deactivate_many+0x2c9/0x300 [ 2.156008] __cancel_work_sync+0x16/0x80 [ 2.156054] __dev_close_many+0x11b/0x280 [ 2.156097] netif_close_many+0x98/0x160 [ 2.156133] unregister_netdevice_many_notify+0x1d8/0xa50 [ 2.156191] ? __queue_work+0x139/0x4e0 [ 2.156228] unregister_netdevice_queue+0xa0/0xe0 [ 2.156278] __tun_detach+0x45e/0x490 [ 2.156317] tun_chr_close+0x35/0xa0 [ 2.156351] __fput+0xda/0x290 [ 2.156390] __x64_sys_close+0x3d/0x80 [ 2.156427] do_syscall_64+0xa4/0xfd0 [ 2.156466] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 2.156517] RIP: 0033:0x4901eb [ 2.156554] Code: 03 00 00 00 0f 05 48 3d 00 f0 ff ff 77 41 c3 48 83 ec 18 89 7c 24 0c e8 c3 78 04 00 8b 7c 24 0c 41 89 c0 b8 03 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 35 44 89 c7 89 44 24 0c e8 21 79 04 00 8b 44 [ 2.156728] RSP: 002b:00007ffe56d24190 EFLAGS: 00000293 ORIG_RAX: 0000000000000003 [ 2.156805] RAX: ffffffffffffffda RBX: 00007ffe56d246e8 RCX: 00000000004901eb [ 2.156880] RDX: 0000000000000002 RSI: 0000000000000002 RDI: 0000000000000005 [ 2.156955] RBP: 00007ffe56d241d0 R08: 0000000000000000 R09: 0000000000000000 [ 2.157031] R10: 0000000023524580 R11: 0000000000000293 R12: 00007ffe56d24668 [ 2.157107] R13: 0000000000000001 R14: 000000000054e030 R15: 0000000000000001 [ 2.157184] [ 2.157208] Modules linked in: [ 2.157247] CR2: 0000000000000000 [ 2.157284] ---[ end trace 0000000000000000 ]--- [ 2.157333] RIP: 0010:work_grab_pending+0x2f/0x1b0 [ 2.157384] Code: 83 e6 01 41 57 41 56 4c 8d 77 20 41 55 41 54 41 89 f4 55 48 89 d5 53 48 89 fb 9c 58 fa 48 89 45 00 45 85 e4 0f 85 8a 00 00 00 48 0f ba 2b 00 41 0f 92 c5 72 0e 5b 44 89 e8 5d 41 5c 41 5d 41 [ 2.157558] RSP: 0018:ffffaa4f4058fcb8 EFLAGS: 00010046 [ 2.157610] RAX: 0000000000000246 RBX: 0000000000000000 RCX: 00000000fffb740c [ 2.157684] RDX: ffffaa4f4058fcf0 RSI: 0000000000000000 RDI: 0000000000000000 [ 2.157761] RBP: ffffaa4f4058fcf0 R08: 0000000000000000 R09: 0000000000000290 [ 2.157837] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 [ 2.157912] R13: ffffaa4f4058fde8 R14: 0000000000000020 R15: 0000000000000000 [ 2.157989] FS: 000000002351a3c0(0000) GS:ffff95d51ad66000(0000) knlGS:0000000000000000 [ 2.158066] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2.158127] CR2: 0000000000000000 CR3: 0000000004e71006 CR4: 0000000000772ef0 [ 2.158202] PKRU: 55555554 [ 2.158229] note: packetdrill[228] exited with irqs disabled WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr