[ 8.859779][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 9.893028][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 9.893765][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 10.916880][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 10.917439][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 11.941879][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 11.942429][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 12.964876][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 12.965447][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 13.989881][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 13.990415][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 15.013876][ C3] TCP: TCP-AO: the keyid 100 from SYN packet is not present - not sending SYNACK
[ 15.693305][ C1] ==================================================================
[ 15.693633][ C1] BUG: KASAN: slab-out-of-bounds in tcp_v6_send_response+0xe2c/0x2450
[ 15.693916][ C1] Read of size 8 at addr ff1100000d72c8c0 by task connect-deny_ip/167
[ 15.694183][ C1]
[ 15.694278][ C1] CPU: 1 UID: 0 PID: 167 Comm: connect-deny_ip Not tainted 7.2.0-virtme #1 PREEMPT(full)
[ 15.694282][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011
[ 15.694284][ C1] Call Trace:
[ 15.694286][ C1]
[ 15.694287][ C1] dump_stack_lvl+0x6f/0xa0
[ 15.694293][ C1] print_address_description.constprop.0+0x56/0x2d0
[ 15.694298][ C1] print_report+0xfc/0x1fa
[ 15.694300][ C1] ? __virt_addr_valid+0x102/0x440
[ 15.694303][ C1] ? __virt_addr_valid+0x1da/0x440
[ 15.694306][ C1] kasan_report+0x108/0x130
[ 15.694309][ C1] ? tcp_v6_send_response+0xe2c/0x2450
[ 15.694311][ C1] ? tcp_v6_send_response+0xe2c/0x2450
[ 15.694314][ C1] kasan_check_range+0x130/0x200
[ 15.694316][ C1] tcp_v6_send_response+0xe2c/0x2450
[ 15.694319][ C1] ? tcp_v6_send_synack+0xe10/0xe10
[ 15.694320][ C1] ? __lock_acquire+0x518/0xc20
[ 15.694324][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694326][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694330][ C1] tcp_v6_timewait_ack+0x35b/0x7f0
[ 15.694333][ C1] ? tcp_v6_reqsk_send_ack+0xe00/0xe00
[ 15.694334][ C1] ? __local_bh_enable_ip+0xaa/0x150
[ 15.694337][ C1] ? tcp_ecn_openreq_child+0x14c0/0x14c0
[ 15.694341][ C1] ? ip6_pol_route+0x2e7/0xaa0
[ 15.694344][ C1] ? __asan_memcpy+0x3c/0x60
[ 15.694346][ C1] tcp_v6_rcv+0x217b/0x2dc0
[ 15.694349][ C1] ? tcp_v6_syn_recv_sock+0x1be0/0x1be0
[ 15.694351][ C1] ? ipv6_raw_deliver+0x35f/0x930
[ 15.694354][ C1] ? ipv6_raw_deliver+0x369/0x930
[ 15.694357][ C1] ? update_cfs_rq_load_avg+0x4b/0x660
[ 15.694362][ C1] ip6_protocol_deliver_rcu+0x15c/0x1480
[ 15.694366][ C1] ip6_input_finish+0x196/0x590
[ 15.694368][ C1] ip6_input+0x130/0x570
[ 15.694370][ C1] ? ip6_input_finish+0x590/0x590
[ 15.694373][ C1] ? ip6_rcv_core+0xe22/0x1be0
[ 15.694375][ C1] ipv6_rcv+0x3c1/0x5a0
[ 15.694377][ C1] ? ip6_rcv_core+0x1be0/0x1be0
[ 15.694379][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694381][ C1] ? __update_load_avg_cfs_rq+0x36c/0x10c0
[ 15.694383][ C1] ? mark_usage+0x61/0x170
[ 15.694385][ C1] ? __lock_acquire+0x518/0xc20
[ 15.694387][ C1] ? trace_raw_output_rcu_invoke_kfree_bulk_callback+0x57/0x130
[ 15.694389][ C1] ? process_backlog+0x3f1/0x14c0
[ 15.694393][ C1] __netif_receive_skb_one_core+0xfc/0x180
[ 15.694395][ C1] ? lock_acquire.part.0+0xd4/0x280
[ 15.694397][ C1] ? process_backlog+0x3f1/0x14c0
[ 15.694399][ C1] ? __netif_receive_skb_list_core+0x9e0/0x9e0
[ 15.694401][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694404][ C1] process_backlog+0x431/0x14c0
[ 15.694407][ C1] __napi_poll+0xa7/0x3b0
[ 15.694409][ C1] net_rx_action+0x513/0xf50
[ 15.694411][ C1] ? __napi_poll+0x3b0/0x3b0
[ 15.694414][ C1] ? mark_held_locks+0x40/0x70
[ 15.694417][ C1] ? clockevents_program_event+0x307/0x7e0
[ 15.694420][ C1] ? mark_held_locks+0x40/0x70
[ 15.694421][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694423][ C1] ? mark_held_locks+0x40/0x70
[ 15.694425][ C1] handle_softirqs+0x1d3/0x900
[ 15.694427][ C1] ? _local_bh_enable+0xc0/0xc0
[ 15.694428][ C1] ? _local_bh_enable+0xc0/0xc0
[ 15.694430][ C1] ? __dev_queue_xmit+0x964/0x1b80
[ 15.694432][ C1] do_softirq+0xac/0xe0
[ 15.694434][ C1]
[ 15.694434][ C1]
[ 15.694435][ C1] __local_bh_enable_ip+0x118/0x150
[ 15.694437][ C1] __dev_queue_xmit+0x979/0x1b80
[ 15.694440][ C1] ? netdev_core_pick_tx+0x2c0/0x2c0
[ 15.694442][ C1] ? lock_acquire.part.0+0xd4/0x280
[ 15.694444][ C1] ? find_held_lock+0x2b/0x80
[ 15.694446][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694447][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694449][ C1] ? mark_held_locks+0x40/0x70
[ 15.694451][ C1] ? __asan_memcpy+0x3c/0x60
[ 15.694452][ C1] ? neigh_hh_output+0x152/0x4c0
[ 15.694455][ C1] ip6_finish_output2+0x96f/0x12a0
[ 15.694457][ C1] ? ip6_dst_lookup+0x80/0x80
[ 15.694459][ C1] ? find_held_lock+0x2b/0x80
[ 15.694460][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694462][ C1] ? ip6_mtu+0x15d/0x310
[ 15.694464][ C1] ip6_finish_output+0x646/0xda0
[ 15.694467][ C1] ip6_output+0x23f/0x7f0
[ 15.694469][ C1] ? ip6_finish_output+0xda0/0xda0
[ 15.694470][ C1] ? lock_acquire.part.0+0xd4/0x280
[ 15.694472][ C1] ? find_held_lock+0x2b/0x80
[ 15.694474][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694476][ C1] ip6_xmit+0xc44/0x1ec0
[ 15.694477][ C1] ? mark_usage+0x61/0x170
[ 15.694479][ C1] ? __lock_acquire+0x518/0xc20
[ 15.694482][ C1] ? ip6_autoflowlabel+0x120/0x120
[ 15.694483][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694485][ C1] ? mark_usage+0x61/0x170
[ 15.694486][ C1] ? __lock_acquire+0x518/0xc20
[ 15.694489][ C1] ? lock_acquire.part.0+0xd4/0x280
[ 15.694490][ C1] ? inet6_csk_xmit+0xfe/0x5f0
[ 15.694492][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694494][ C1] ? lock_acquire+0x13c/0x160
[ 15.694496][ C1] inet6_csk_xmit+0x2f6/0x5f0
[ 15.694499][ C1] __tcp_transmit_skb+0x1b6e/0x3c10
[ 15.694502][ C1] ? __tcp_select_window+0xf20/0xf20
[ 15.694503][ C1] ? find_held_lock+0x2b/0x80
[ 15.694505][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694506][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694508][ C1] ? tcp_mtu_probe+0x19/0x1b60
[ 15.694510][ C1] tcp_write_xmit+0xff9/0x3710
[ 15.694513][ C1] ? __alloc_skb+0x3f0/0x5f0
[ 15.694516][ C1] ? tcp_retrans_try_collapse+0xee0/0xee0
[ 15.694519][ C1] ? tcp_set_state+0x101/0x580
[ 15.694524][ C1] __tcp_push_pending_frames+0x8f/0x3b0
[ 15.694527][ C1] __tcp_close+0x84e/0xe70
[ 15.694530][ C1] tcp_close+0x23/0xb0
[ 15.694531][ C1] inet_release+0x10a/0x240
[ 15.694534][ C1] ? fcntl_setlk+0xc80/0xc80
[ 15.694538][ C1] __sock_release+0xb8/0x280
[ 15.694541][ C1] sock_close+0x18/0x20
[ 15.694543][ C1] __fput+0x363/0xac0
[ 15.694545][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694547][ C1] ? trace_irq_enable.constprop.0+0x9b/0x160
[ 15.694549][ C1] ? do_raw_spin_unlock+0x59/0x250
[ 15.694551][ C1] ? _raw_spin_unlock_irq+0x28/0x50
[ 15.694554][ C1] ? _raw_spin_unlock_irq+0x33/0x50
[ 15.694555][ C1] task_work_run+0x12b/0x240
[ 15.694557][ C1] ? lockdep_hardirqs_on+0x91/0x130
[ 15.694560][ C1] ? task_work_cancel+0x30/0x30
[ 15.694562][ C1] ? kmem_cache_free+0xf8/0x550
[ 15.694565][ C1] do_exit+0x614/0xdc0
[ 15.694566][ C1] ? exit_notify+0x890/0x890
[ 15.694568][ C1] ? find_held_lock+0x2b/0x80
[ 15.694569][ C1] ? __lock_release.isra.0+0x69/0x1a0
[ 15.694571][ C1] ? __rwlock_init+0x150/0x150
[ 15.694573][ C1] do_group_exit+0xb8/0x370
[ 15.694574][ C1] ? lockdep_hardirqs_on_prepare.part.0+0x9a/0x160
[ 15.694576][ C1] ? lockdep_hardirqs_on+0x91/0x130
[ 15.694577][ C1] ? _raw_spin_unlock_irq+0x28/0x50
[ 15.694578][ C1] ? _raw_spin_unlock_irq+0x33/0x50
[ 15.694579][ C1] get_signal+0x1886/0x1980
[ 15.694583][ C1] ? ptrace_signal+0x600/0x600
[ 15.694586][ C1] arch_do_signal_or_restart+0xc2/0x3a0
[ 15.694589][ C1] ? get_sigframe_size+0x20/0x20
[ 15.694591][ C1] ? lockdep_hardirqs_on+0x91/0x130
[ 15.694593][ C1] ? do_futex+0x270/0x270
[ 15.694595][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694597][ C1] ? trace_irq_enable.constprop.0+0x9b/0x160
[ 15.694598][ C1] exit_to_user_mode_loop+0xd5/0x5a0
[ 15.694601][ C1] ? rcu_is_watching+0x16/0xd0
[ 15.694603][ C1] do_syscall_64+0x3e3/0x530
[ 15.694605][ C1] ? irq_exit_rcu+0x1a/0x30
[ 15.694607][ C1] entry_SYSCALL_64_after_hwframe+0x4b/0x53
[ 15.694609][ C1] RIP: 0033:0x7faa58d63312
[ 15.694612][ C1] Code: Unable to access opcode bytes at 0x7faa58d632e8.
[ 15.694613][ C1] RSP: 002b:00007ffe8221fbd8 EFLAGS: 00000246 ORIG_RAX: 00000000000000ca
[ 15.694619][ C1] RAX: fffffffffffffe00 RBX: 0000000000416440 RCX: 00007faa58d63312
[ 15.694620][ C1] RDX: 000000000000002a RSI: 0000000000000189 RDI: 0000000000416460
[ 15.694621][ C1] RBP: 00007ffe8221fc00 R08: 0000000000000000 R09: 00000000ffffffff
[ 15.694622][ C1] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000
[ 15.694623][ C1] R13: 0000000000416480 R14: 0000000000000058 R15: 0000000000000000
[ 15.694625][ C1]
[ 15.694626][ C1]
[ 15.721447][ C1] The buggy address belongs to the object at ff1100000d72c850
[ 15.721447][ C1] which belongs to the cache tw_sock_TCPv6 of size 296
[ 15.721927][ C1] The buggy address is located 112 bytes inside of
[ 15.721927][ C1] allocated 296-byte region [ff1100000d72c850, ff1100000d72c978)
[ 15.722397][ C1]
[ 15.722489][ C1] The buggy address belongs to the physical page:
[ 15.722712][ C1] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0xff1100000d72c500 pfn:0xd72c
[ 15.723071][ C1] head: order:1 mapcount:0 entire_mapcount:0 nr_pages_mapped:0 pincount:0
[ 15.723339][ C1] flags: 0x80000000000240(workingset|head|node=0|zone=1)
[ 15.723560][ C1] page_type: f5(slab)
[ 15.723696][ C1] raw: 0080000000000240 ff11000005d0db40 ff11000005d16e48 ff11000005d16e48
[ 15.724015][ C1] raw: ff1100000d72c500 0000000000130003 00000000f5000000 0000000000000000
[ 15.724330][ C1] head: 0080000000000240 ff11000005d0db40 ff11000005d16e48 ff11000005d16e48
[ 15.724645][ C1] head: ff1100000d72c500 0000000000130003 00000000f5000000 0000000000000000
[ 15.724965][ C1] head: 0080000000000001 ffffffffffffff81 00000000ffffffff 00000000ffffffff
[ 15.725271][ C1] head: 0000000000000000 0000000000000000 00000000ffffffff 0000000000000000
[ 15.725580][ C1] page dumped because: kasan: bad access detected
[ 15.725798][ C1]
[ 15.725885][ C1] Memory state around the buggy address:
[ 15.726054][ C1] ff1100000d72c780: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[ 15.726308][ C1] ff1100000d72c800: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[ 15.726559][ C1] >ff1100000d72c880: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[ 15.726813][ C1] ^
[ 15.727025][ C1] ff1100000d72c900: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[ 15.727276][ C1] ff1100000d72c980: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[ 15.727526][ C1] ==================================================================
[ 15.727788][ C1] Disabling lock debugging due to kernel taint