====================================== | xx__-> [ 11.487644][ T166] ------------[ cut here ]------------ | [ 11.488311][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#3: unshare/166 | [ 11.488595][ T166] Modules linked in: | [ 11.489088][ T166] Tainted: [W]=WARN [ 11.489224][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 11.489395][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 11.489580][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 11.490092][ T166] RSP: 0018:ffa00000007d7ab0 EFLAGS: 00010286 [ 11.490265][ T166] RAX: 00000000ffffffa6 RBX: ff1100000c3d19c0 RCX: 1ff40000000faf1c [ 11.490468][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff1100000c3d1a70 [ 11.490688][ T166] RBP: ff110000057f9000 R08: 1fe220000187a34f R09: ff1100000b20d180 [ 11.490891][ T166] R10: 0000000000000003 R11: 0000000000000001 R12: 00000000ffffffff [ 11.491091][ T166] R13: 0000000000000000 R14: 0000000000000000 R15: ff110000057f9000 [ 11.491304][ T166] FS: 00007f96346a8740(0000) GS:ff11000099b53000(0000) knlGS:0000000000000000 [ 11.491542][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 11.491725][ T166] CR2: 000055b79f205310 CR3: 000000000c7d6001 CR4: 0000000000771ef0 [ 11.491927][ T166] PKRU: 55555554 [ 11.492033][ T166] Call Trace: [ 11.492134][ T166] [ 11.492205][ T166] ? ip6_route_dev_notify (net/ipv6/route.c:6484) [ 11.492343][ T166] rtmsg_ifinfo_event.part.0 (net/core/rtnetlink.c:4551) [ 11.492479][ T166] ? notifier_call_chain (kernel/notifier.c:85) [ 11.492680][ T166] rtmsg_ifinfo (net/core/rtnetlink.c:4551 net/core/rtnetlink.c:4560) [ 11.492797][ T166] register_netdevice (net/core/dev.c:11488) [ 11.492939][ T166] ? unregister_netdevice_queue (./include/linux/list.h:162) [ 11.493110][ T166] register_netdev (net/core/dev.c:11552) [ 11.493244][ T166] loopback_net_init (drivers/net/loopback.c:218) [ 11.493382][ T166] ops_init (net/core/net_namespace.c:137) [ 11.493511][ T166] setup_net (net/core/net_namespace.c:446) [ 11.493624][ T166] ? unregister_pernet_device (net/core/net_namespace.c:1503) [ 11.493765][ T166] ? lockdep_init_map_type (kernel/locking/lockdep.c:4973) [ 11.493901][ T166] ? mutex_init_lockdep (./include/linux/lockdep.h:135 ./include/linux/lockdep.h:142 kernel/locking/mutex.c:185) [ 11.494039][ T166] copy_net_ns (net/core/net_namespace.c:579) [ 11.494180][ T166] create_new_namespaces (kernel/nsproxy.c:132) [ 11.494334][ T166] unshare_nsproxy_namespaces (kernel/nsproxy.c:234 (discriminator 4)) [ 11.494482][ T166] ksys_unshare (kernel/fork.c:3243) [ 11.494625][ T166] ? walk_process_tree (kernel/fork.c:3036 (discriminator 19)) [ 11.494770][ T166] __x64_sys_unshare (kernel/fork.c:3317 kernel/fork.c:3315 kernel/fork.c:3315) [ 11.494903][ T166] ? do_syscall_64 (./include/linux/entry-common.h:177 arch/x86/entry/syscall_64.c:89) [ 11.495054][ T166] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 11.495189][ T166] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 11.495329][ T166] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 11.495464][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 11.495638][ T166] RIP: 0033:0x7f96347a3bcb [ 11.495788][ T166] Code: 73 01 c3 48 8b 0d 2d 82 0f 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 01 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d fd 81 0f 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d 2d 82 0f 00 mov 0xf822d(%rip),%rcx # 0xf8237 a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 01 00 00 mov $0x110,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d fd 81 0f 00 mov 0xf81fd(%rip),%rcx # 0xf8237 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d fd 81 0f 00 mov 0xf81fd(%rip),%rcx # 0xf820d 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 11.496271][ T166] RSP: 002b:00007ffdedd91f28 EFLAGS: 00000246 ORIG_RAX: 0000000000000110 [ 11.496474][ T166] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007f96347a3bcb [ 11.496681][ T166] RDX: 0000000000000000 RSI: 00007ffdedd91c90 RDI: 0000000040000000 [ 11.496890][ T166] RBP: 00007ffdedd922b0 R08: 00007ffdedd91e80 R09: 0000000000000000 [ 11.497094][ T166] R10: 0000000000000008 R11: 0000000000000246 R12: 0000000040000000 [ 11.497297][ T166] R13: 0000000000000000 R14: 00000000ffffffff R15: 000055b79f208b68 | [ 11.523545][ T166] ------------[ cut here ]------------ | [ 11.523854][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#2: packetdrill/166 | [ 11.524301][ T166] Modules linked in: | [ 11.525057][ T166] Tainted: [W]=WARN [ 11.525260][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 11.525550][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 11.525886][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 11.526617][ T166] RSP: 0018:ffa00000007d7b58 EFLAGS: 00010286 [ 11.526922][ T166] RAX: 00000000ffffffa6 RBX: ff11000008a21540 RCX: 1ff40000000faf31 [ 11.527265][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff11000008a215f0 [ 11.527609][ T166] RBP: ff11000005010000 R08: 1fe22000011442bf R09: ff1100000b20d158 [ 11.527958][ T166] R10: 0000000000000002 R11: 0000000000000001 R12: 00000000ffffffff [ 11.528294][ T166] R13: 0000000000000000 R14: 0000000000000000 R15: ff11000005010000 [ 11.528642][ T166] FS: 0000000030e81400(0000) GS:ff11000099ad3000(0000) knlGS:0000000000000000 [ 11.529038][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 11.529329][ T166] CR2: 00007fbc2bfcb000 CR3: 000000000c4b1004 CR4: 0000000000771ef0 [ 11.529679][ T166] PKRU: 55555554 [ 11.529990][ T166] Call Trace: [ 11.530186][ T166] [ 11.530338][ T166] ? ip6_route_dev_notify (./include/net/net_namespace.h:419 (discriminator 1) ./include/linux/netdevice.h:2776 (discriminator 1) net/ipv6/route.c:6476 (discriminator 1)) [ 11.530598][ T166] rtmsg_ifinfo_event.part.0 (net/core/rtnetlink.c:4551) [ 11.530857][ T166] ? notifier_call_chain (kernel/notifier.c:85) [ 11.531101][ T166] rtmsg_ifinfo (net/core/rtnetlink.c:4551 net/core/rtnetlink.c:4560) [ 11.531301][ T166] register_netdevice (net/core/dev.c:11488) [ 11.531550][ T166] ? unregister_netdevice_queue (./include/linux/list.h:162) [ 11.531866][ T166] ? alloc_netdev_mqs (net/core/dev.c:12133) [ 11.532113][ T166] tun_set_iff.constprop.0 (drivers/net/tun.c:2876) [ 11.532359][ T166] ? tun_attach.isra.0 (./include/linux/ptr_ring.h:601) [ 11.532608][ T166] ? tun_get (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) drivers/net/tun.c:803 (discriminator 2)) [ 11.532823][ T166] __tun_chr_ioctl (drivers/net/tun.c:3157) [ 11.533072][ T166] ? build_open_flags (fs/open.c:1212) [ 11.533315][ T166] ? tun_chr_read_iter (drivers/net/tun.c:2271 (discriminator 1)) [ 11.533556][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 11.533835][ T166] ? __x64_sys_openat (fs/open.c:1370 fs/open.c:1386 fs/open.c:1381 fs/open.c:1381) [ 11.534081][ T166] ? fput_close_sync (fs/file_table.c:615) [ 11.534321][ T166] ? __ia32_sys_open (fs/open.c:1374) [ 11.534564][ T166] __x64_sys_ioctl (fs/ioctl.c:51 fs/ioctl.c:597 fs/ioctl.c:583 fs/ioctl.c:583) [ 11.534838][ T166] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 11.535104][ T166] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 11.535347][ T166] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 11.535604][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 11.535918][ T166] RIP: 0033:0x47cc8d [ 11.536124][ T166] Code: 04 25 28 00 00 00 48 89 45 c8 31 c0 48 8d 45 10 c7 45 b0 10 00 00 00 48 89 45 b8 48 8d 45 d0 48 89 45 c0 b8 10 00 00 00 0f 05 <89> c2 3d 00 f0 ff ff 77 1a 48 8b 45 c8 64 48 2b 04 25 28 00 00 00 All code ======== 0: 04 25 add $0x25,%al 2: 28 00 sub %al,(%rax) 4: 00 00 add %al,(%rax) 6: 48 89 45 c8 mov %rax,-0x38(%rbp) a: 31 c0 xor %eax,%eax c: 48 8d 45 10 lea 0x10(%rbp),%rax 10: c7 45 b0 10 00 00 00 movl $0x10,-0x50(%rbp) 17: 48 89 45 b8 mov %rax,-0x48(%rbp) 1b: 48 8d 45 d0 lea -0x30(%rbp),%rax 1f: 48 89 45 c0 mov %rax,-0x40(%rbp) 23: b8 10 00 00 00 mov $0x10,%eax 28: 0f 05 syscall 2a:* 89 c2 mov %eax,%edx <-- trapping instruction 2c: 3d 00 f0 ff ff cmp $0xfffff000,%eax 31: 77 1a ja 0x4d 33: 48 8b 45 c8 mov -0x38(%rbp),%rax 37: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 3e: 00 00 Code starting with the faulting instruction =========================================== 0: 89 c2 mov %eax,%edx 2: 3d 00 f0 ff ff cmp $0xfffff000,%eax 7: 77 1a ja 0x23 9: 48 8b 45 c8 mov -0x38(%rbp),%rax d: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 14: 00 00 [ 11.536904][ T166] RSP: 002b:00007fffc99b6b60 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 11.537243][ T166] RAX: ffffffffffffffda RBX: 0000000000000010 RCX: 000000000047cc8d [ 11.537587][ T166] RDX: 00007fffc99b6be0 RSI: 00000000400454ca RDI: 0000000000000005 [ 11.537943][ T166] RBP: 00007fffc99b6bb0 R08: 0000000000000000 R09: 0000000000000000 [ 11.538276][ T166] R10: 0000000000000000 R11: 0000000000000246 R12: 00007fffc99b70b8 [ 11.538617][ T166] R13: 00007fffc99b7140 R14: 0000000000000002 R15: 0000000000543540 | [ 11.541834][ T166] ------------[ cut here ]------------ | [ 11.542067][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#2: packetdrill/166 | [ 11.542489][ T166] Modules linked in: | [ 11.543330][ T166] Tainted: [W]=WARN [ 11.543523][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 11.543831][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 11.544130][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 11.544871][ T166] RSP: 0018:ffa00000007d7c58 EFLAGS: 00010286 [ 11.545157][ T166] RAX: 00000000ffffffa6 RBX: ff11000008a21e40 RCX: 1ff40000000faf51 [ 11.545489][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff11000008a21ef0 [ 11.545851][ T166] RBP: ff11000005010000 R08: 1fe22000011443df R09: ff1100000b20d158 [ 11.546181][ T166] R10: 0000000000000002 R11: 0000000000000001 R12: 0000000000000000 [ 11.546533][ T166] R13: 0000000000000002 R14: 0000000000000000 R15: 0000000000000002 [ 11.546889][ T166] FS: 0000000030e81400(0000) GS:ff11000099ad3000(0000) knlGS:0000000000000000 [ 11.547292][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 11.547588][ T166] CR2: 00007fbc2bfcb000 CR3: 000000000c4b1004 CR4: 0000000000771ef0 [ 11.547939][ T166] PKRU: 55555554 [ 11.548131][ T166] Call Trace: [ 11.548326][ T166] [ 11.548473][ T166] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 11.548737][ T166] rtnetlink_event (net/core/rtnetlink.c:4551 net/core/rtnetlink.c:4541 net/core/rtnetlink.c:7121) [ 11.548985][ T166] notifier_call_chain (kernel/notifier.c:85) [ 11.549229][ T166] netdev_update_features (net/core/dev.c:2287 net/core/dev.c:2301 net/core/dev.c:1590 net/core/dev.c:11099 net/core/dev.c:11096) [ 11.549470][ T166] ? netdev_sync_lower_features (net/core/dev.c:10883) [ 11.549785][ T166] __tun_chr_ioctl (drivers/net/tun.c:2963 drivers/net/tun.c:3285) [ 11.550035][ T166] ? tun_chr_read_iter (drivers/net/tun.c:2271 (discriminator 1)) [ 11.550274][ T166] ? fd_install (./include/linux/rcupdate.h:963 (discriminator 1) fs/file.c:699 (discriminator 1)) [ 11.550515][ T166] ? update_socket_protocol+0x10/0x10 [ 11.550902][ T166] ? alloc_file_clone (fs/file_table.c:477) [ 11.551149][ T166] __x64_sys_ioctl (fs/ioctl.c:51 fs/ioctl.c:597 fs/ioctl.c:583 fs/ioctl.c:583) [ 11.551395][ T166] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 11.551647][ T166] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 11.551910][ T166] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 11.552152][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 11.552433][ T166] RIP: 0033:0x47cc8d [ 11.552646][ T166] Code: 04 25 28 00 00 00 48 89 45 c8 31 c0 48 8d 45 10 c7 45 b0 10 00 00 00 48 89 45 b8 48 8d 45 d0 48 89 45 c0 b8 10 00 00 00 0f 05 <89> c2 3d 00 f0 ff ff 77 1a 48 8b 45 c8 64 48 2b 04 25 28 00 00 00 All code ======== 0: 04 25 add $0x25,%al 2: 28 00 sub %al,(%rax) 4: 00 00 add %al,(%rax) 6: 48 89 45 c8 mov %rax,-0x38(%rbp) a: 31 c0 xor %eax,%eax c: 48 8d 45 10 lea 0x10(%rbp),%rax 10: c7 45 b0 10 00 00 00 movl $0x10,-0x50(%rbp) 17: 48 89 45 b8 mov %rax,-0x48(%rbp) 1b: 48 8d 45 d0 lea -0x30(%rbp),%rax 1f: 48 89 45 c0 mov %rax,-0x40(%rbp) 23: b8 10 00 00 00 mov $0x10,%eax 28: 0f 05 syscall 2a:* 89 c2 mov %eax,%edx <-- trapping instruction 2c: 3d 00 f0 ff ff cmp $0xfffff000,%eax 31: 77 1a ja 0x4d 33: 48 8b 45 c8 mov -0x38(%rbp),%rax 37: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 3e: 00 00 Code starting with the faulting instruction =========================================== 0: 89 c2 mov %eax,%edx 2: 3d 00 f0 ff ff cmp $0xfffff000,%eax 7: 77 1a ja 0x23 9: 48 8b 45 c8 mov -0x38(%rbp),%rax d: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 14: 00 00 [ 11.553383][ T166] RSP: 002b:00007fffc99b6ba0 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 11.553736][ T166] RAX: ffffffffffffffda RBX: 0000000000000010 RCX: 000000000047cc8d [ 11.554065][ T166] RDX: 000000000000000f RSI: 00000000400454d0 RDI: 0000000000000005 [ 11.554401][ T166] RBP: 00007fffc99b6bf0 R08: 0000000000000000 R09: 0000000000000000 [ 11.554763][ T166] R10: 0000000000000000 R11: 0000000000000246 R12: 00007fffc99b70b8 [ 11.555093][ T166] R13: 00007fffc99b7140 R14: 0000000000000002 R15: 0000000000543540 | [ 11.571193][ T166] ------------[ cut here ]------------ | [ 11.572371][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#2: packetdrill/166 | [ 11.573795][ T166] Modules linked in: | [ 11.575706][ T166] Tainted: [W]=WARN [ 11.575920][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 11.576236][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 11.576579][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 11.577410][ T166] RSP: 0018:ffa00000007d7850 EFLAGS: 00010286 [ 11.577752][ T166] RAX: 00000000ffffffa6 RBX: ff11000008a21240 RCX: 1ff40000000faed0 [ 11.578129][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff11000008a212f0 [ 11.578503][ T166] RBP: ff11000005010000 R08: 1fe220000114425f R09: ff1100000b20d158 [ 11.578897][ T166] R10: 0000000000000002 R11: 0000000000000001 R12: 0000000000000001 [ 11.579263][ T166] R13: 0000000000000000 R14: 0000000000000000 R15: ff11000005820900 [ 11.579639][ T166] FS: 0000000030e81400(0000) GS:ff11000099ad3000(0000) knlGS:0000000000000000 [ 11.580086][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 11.580403][ T166] CR2: 00007fbc2bfcb000 CR3: 000000000c4b1004 CR4: 0000000000771ef0 [ 11.580808][ T166] PKRU: 55555554 [ 11.581022][ T166] Call Trace: [ 11.581230][ T166] [ 11.581393][ T166] rtmsg_ifinfo_event.part.0 (net/core/rtnetlink.c:4551) [ 11.581666][ T166] rtmsg_ifinfo (net/core/rtnetlink.c:4551 net/core/rtnetlink.c:4560) [ 11.581894][ T166] ? mark_held_locks (kernel/locking/lockdep.c:4325) [ 11.582159][ T166] __dev_notify_flags (net/core/dev.c:9787) [ 11.582424][ T166] ? netif_change_name (net/core/dev.c:1495) [ 11.582818][ T166] ? __dev_change_flags (net/core/dev.c:9752) [ 11.583079][ T166] ? netif_set_allmulti (./include/net/netdev_lock.h:30 (discriminator 1)) [ 11.583342][ T166] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 11.583618][ T166] netif_change_flags (net/core/dev.c:9820) [ 11.583940][ T166] ? cap_capable (./include/trace/events/capability.h:26 (discriminator 22) security/commoncap.c:130 (discriminator 22)) [ 11.584209][ T166] dev_change_flags (net/core/dev_api.c:68) [ 11.584486][ T166] devinet_ioctl (net/ipv4/devinet.c:1199) [ 11.584781][ T166] ? inet_ifa_byprefix (net/ipv4/devinet.c:619 (discriminator 9)) [ 11.585045][ T166] ? _copy_from_user (./include/linux/instrumented.h:146 ./include/linux/uaccess.h:184 lib/usercopy.c:18) [ 11.585311][ T166] inet_ioctl (net/ipv4/af_inet.c:1011) [ 11.585525][ T166] ? inet_dgram_connect (net/ipv4/af_inet.c:589) [ 11.585816][ T166] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 11.586098][ T166] ? __might_fault (mm/memory.c:7340 (discriminator 5)) [ 11.586365][ T166] ? __might_fault (mm/memory.c:7340 (discriminator 5)) [ 11.586635][ T166] sock_do_ioctl (net/socket.c:1313) [ 11.586918][ T166] ? __sock_recv_cmsgs (./include/net/sock.h:2867) [ 11.587188][ T166] ? ioctl_file_clone (fs/ioctl.c:244) [ 11.587455][ T166] sock_ioctl (net/socket.c:1434) [ 11.587699][ T166] ? br_ioctl_call (net/socket.c:1279) [ 11.587976][ T166] ? fd_install (./include/linux/rcupdate.h:963 (discriminator 1) fs/file.c:699 (discriminator 1)) [ 11.588251][ T166] ? update_socket_protocol+0x10/0x10 [ 11.588510][ T166] ? alloc_file_clone (fs/file_table.c:477) [ 11.588804][ T166] __x64_sys_ioctl (fs/ioctl.c:51 fs/ioctl.c:597 fs/ioctl.c:583 fs/ioctl.c:583) [ 11.589071][ T166] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 11.589338][ T166] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 11.589609][ T166] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 11.589891][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 11.590204][ T166] RIP: 0033:0x47cc8d [ 11.590427][ T166] Code: 04 25 28 00 00 00 48 89 45 c8 31 c0 48 8d 45 10 c7 45 b0 10 00 00 00 48 89 45 b8 48 8d 45 d0 48 89 45 c0 b8 10 00 00 00 0f 05 <89> c2 3d 00 f0 ff ff 77 1a 48 8b 45 c8 64 48 2b 04 25 28 00 00 00 All code ======== 0: 04 25 add $0x25,%al 2: 28 00 sub %al,(%rax) 4: 00 00 add %al,(%rax) 6: 48 89 45 c8 mov %rax,-0x38(%rbp) a: 31 c0 xor %eax,%eax c: 48 8d 45 10 lea 0x10(%rbp),%rax 10: c7 45 b0 10 00 00 00 movl $0x10,-0x50(%rbp) 17: 48 89 45 b8 mov %rax,-0x48(%rbp) 1b: 48 8d 45 d0 lea -0x30(%rbp),%rax 1f: 48 89 45 c0 mov %rax,-0x40(%rbp) 23: b8 10 00 00 00 mov $0x10,%eax 28: 0f 05 syscall 2a:* 89 c2 mov %eax,%edx <-- trapping instruction 2c: 3d 00 f0 ff ff cmp $0xfffff000,%eax 31: 77 1a ja 0x4d 33: 48 8b 45 c8 mov -0x38(%rbp),%rax 37: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 3e: 00 00 Code starting with the faulting instruction =========================================== 0: 89 c2 mov %eax,%edx 2: 3d 00 f0 ff ff cmp $0xfffff000,%eax 7: 77 1a ja 0x23 9: 48 8b 45 c8 mov -0x38(%rbp),%rax d: 64 48 2b 04 25 28 00 sub %fs:0x28,%rax 14: 00 00 [ 11.591232][ T166] RSP: 002b:00007fffc99b6b80 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 11.591603][ T166] RAX: ffffffffffffffda RBX: 0000000000000010 RCX: 000000000047cc8d [ 11.591997][ T166] RDX: 00007fffc99b6bf0 RSI: 0000000000008914 RDI: 0000000000000006 [ 11.592390][ T166] RBP: 00007fffc99b6bd0 R08: 0000000000000000 R09: 0000000000000000 [ 11.592789][ T166] R10: 0000000000000000 R11: 0000000000000246 R12: 00007fffc99b70b8 [ 11.593151][ T166] R13: 00007fffc99b7140 R14: 0000000000000002 R15: 0000000000543540 | [ 101.225304][ T166] ------------[ cut here ]------------ | [ 101.225643][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#2: packetdrill/166 | [ 101.226011][ T166] Modules linked in: | [ 101.226587][ T166] Tainted: [W]=WARN [ 101.226834][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 101.227134][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 101.227455][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 101.228071][ T166] RSP: 0018:ffa00000007d76f0 EFLAGS: 00010286 [ 101.228382][ T166] RAX: 00000000ffffffa6 RBX: ff11000004d916c0 RCX: 1ff40000000faea4 [ 101.228721][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff11000004d91770 [ 101.229037][ T166] RBP: ff11000005010000 R08: 1fe22000009b22ef R09: ff1100000b20d158 [ 101.229357][ T166] R10: 0000000000000002 R11: 0000000000000001 R12: 0000000000000041 [ 101.229727][ T166] R13: 0000000000000000 R14: 0000000000000000 R15: ffa00000007d7790 [ 101.230060][ T166] FS: 0000000000000000(0000) GS:ff11000099ad3000(0000) knlGS:0000000000000000 [ 101.230466][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 101.230790][ T166] CR2: 00007fbc2bfcb000 CR3: 0000000038b39005 CR4: 0000000000771ef0 [ 101.231246][ T166] PKRU: 55555554 [ 101.231595][ T166] Call Trace: [ 101.231928][ T166] [ 101.232123][ T166] rtmsg_ifinfo_event.part.0 (net/core/rtnetlink.c:4551) [ 101.232446][ T166] rtmsg_ifinfo (net/core/rtnetlink.c:4551 net/core/rtnetlink.c:4560) [ 101.232813][ T166] netif_close_many (net/core/dev.c:1804) [ 101.233148][ T166] ? asym_cpu_capacity_scan (./include/linux/rculist.h:103) [ 101.233452][ T166] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 101.233839][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.234164][ T166] ? __dev_close_many (net/core/dev.c:1781) [ 101.234467][ T166] ? netif_close_many_and_unlock (net/core/dev.c:12330) [ 101.234792][ T166] unregister_netdevice_many_notify (net/core/dev.c:12406) [ 101.235089][ T166] ? select_fallback_rq (kernel/sched/sched.h:1383) [ 101.235389][ T166] ? unregister_netdevice_queued (./include/linux/list.h:404 (discriminator 3)) [ 101.235724][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.235985][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.236316][ T166] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5535) [ 101.236617][ T166] ? __queue_work (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) kernel/workqueue.c:2402 (discriminator 2)) [ 101.236997][ T166] unregister_netdevice_queue (net/core/dev.c:12497 net/core/dev.c:12309 net/core/dev.c:12299) [ 101.237363][ T166] ? mark_held_locks (kernel/locking/lockdep.c:4325) [ 101.237658][ T166] ? unregister_netdevice_many (net/core/dev.c:12497) [ 101.238039][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.238346][ T166] ? queue_delayed_work_on (kernel/workqueue.c:2616 (discriminator 6)) [ 101.238631][ T166] __tun_detach (./include/linux/netdevice.h:3455 drivers/net/tun.c:628) [ 101.238975][ T166] tun_chr_close (drivers/net/tun.c:644 drivers/net/tun.c:3505) [ 101.239249][ T166] __fput (fs/file_table.c:510) [ 101.239437][ T166] task_work_run (kernel/task_work.c:233) [ 101.239720][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.239934][ T166] ? task_work_cancel (kernel/task_work.c:190) [ 101.240170][ T166] ? kmem_cache_free (./include/linux/kasan.h:235 mm/slub.c:2689 mm/slub.c:6250 mm/slub.c:6377) [ 101.240371][ T166] do_exit (./include/linux/task_work.h:40 kernel/exit.c:976) [ 101.240531][ T166] ? exit_notify (kernel/exit.c:748) [ 101.240796][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.241069][ T166] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5535) [ 101.241343][ T166] ? __rwlock_init (kernel/locking/spinlock_debug.c:48) [ 101.241605][ T166] do_group_exit (kernel/exit.c:1119) [ 101.241886][ T166] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:470 (discriminator 2) kernel/locking/lockdep.c:4411 (discriminator 2)) [ 101.242183][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.242383][ T166] ? _raw_spin_unlock_irq (./include/linux/spinlock_api_smp.h:187 kernel/locking/spinlock.c:206) [ 101.242574][ T166] ? _raw_spin_unlock_irq (./include/linux/spinlock_api_smp.h:188 (discriminator 1) kernel/locking/spinlock.c:206 (discriminator 1)) [ 101.242779][ T166] get_signal (kernel/signal.c:3037) [ 101.242980][ T166] ? ptrace_signal (./include/linux/signal.h:87) [ 101.243170][ T166] arch_do_signal_or_restart (arch/x86/kernel/signal.c:337) [ 101.243366][ T166] ? __sys_recvmsg (net/socket.c:2993) [ 101.243574][ T166] ? get_sigframe_size (arch/x86/kernel/signal.c:233) [ 101.243806][ T166] ? __sys_recvmsg_sock (net/socket.c:2974) [ 101.244031][ T166] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 101.244243][ T166] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 101.244469][ T166] exit_to_user_mode_loop (kernel/entry/common.c:64 kernel/entry/common.c:98) [ 101.244705][ T166] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 101.244895][ T166] do_syscall_64 (./include/linux/irq-entry-common.h:207 ./include/linux/irq-entry-common.h:230 ./include/linux/entry-common.h:318 arch/x86/entry/syscall_64.c:100) [ 101.245085][ T166] ? irq_exit_rcu (kernel/softirq.c:754) [ 101.245323][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 101.245706][ T166] RIP: 0033:0x4c2d9e [ 101.245967][ T166] Code: Unable to access opcode bytes at 0x4c2d74. Code starting with the faulting instruction =========================================== [ 101.246228][ T166] RSP: 002b:00007fffc99b6510 EFLAGS: 00000202 ORIG_RAX: 000000000000002f [ 101.246495][ T166] RAX: 0000000000000050 RBX: 00007fffc99b65a0 RCX: 00000000004c2d9e [ 101.246760][ T166] RDX: 0000000000000000 RSI: 00007fffc99b65b0 RDI: 0000000000000007 [ 101.247105][ T166] RBP: 00007fffc99b6520 R08: 0000000000000000 R09: 0000000000000000 [ 101.247570][ T166] R10: 0000000000000000 R11: 0000000000000202 R12: 00007fffc99b6594 [ 101.247863][ T166] R13: 00007fffc99b7140 R14: 00007fffc99b66e0 R15: 0000000000543540 | [ 101.261215][ T166] ------------[ cut here ]------------ | [ 101.261507][ T166] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#2: packetdrill/166 | [ 101.261848][ T166] Modules linked in: | [ 101.262499][ T166] Tainted: [W]=WARN [ 101.262649][ T166] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 101.262872][ T166] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 101.263100][ T166] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 101.263718][ T166] RSP: 0018:ffa00000007d7820 EFLAGS: 00010286 [ 101.263938][ T166] RAX: 00000000ffffffa6 RBX: ff1100000cc43840 RCX: 1ff40000000faeca [ 101.264294][ T166] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff1100000cc438f0 [ 101.264558][ T166] RBP: ff11000005010000 R08: 1fe220000198871f R09: ff1100000b20d158 [ 101.264878][ T166] R10: 0000000000000002 R11: 0000000000000001 R12: 00000000ffffffff [ 101.265140][ T166] R13: 0000000000000000 R14: 0000000000000000 R15: dffffc0000000000 [ 101.265487][ T166] FS: 0000000000000000(0000) GS:ff11000099ad3000(0000) knlGS:0000000000000000 [ 101.265835][ T166] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 101.266083][ T166] CR2: 00007fbc2bfcb000 CR3: 0000000038b39005 CR4: 0000000000771ef0 [ 101.266409][ T166] PKRU: 55555554 [ 101.266602][ T166] Call Trace: [ 101.266825][ T166] [ 101.266984][ T166] unregister_netdevice_many_notify (net/core/dev.c:12439) [ 101.267298][ T166] ? unregister_netdevice_queued (./include/linux/list.h:404 (discriminator 3)) [ 101.267596][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.267842][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.268089][ T166] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5535) [ 101.268298][ T166] ? __queue_work (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) kernel/workqueue.c:2402 (discriminator 2)) [ 101.268484][ T166] unregister_netdevice_queue (net/core/dev.c:12497 net/core/dev.c:12309 net/core/dev.c:12299) [ 101.268702][ T166] ? mark_held_locks (kernel/locking/lockdep.c:4325) [ 101.268941][ T166] ? unregister_netdevice_many (net/core/dev.c:12497) [ 101.269124][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.269311][ T166] ? queue_delayed_work_on (kernel/workqueue.c:2616 (discriminator 6)) [ 101.269493][ T166] __tun_detach (./include/linux/netdevice.h:3455 drivers/net/tun.c:628) [ 101.269678][ T166] tun_chr_close (drivers/net/tun.c:644 drivers/net/tun.c:3505) [ 101.269871][ T166] __fput (fs/file_table.c:510) [ 101.270026][ T166] task_work_run (kernel/task_work.c:233) [ 101.270207][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.270395][ T166] ? task_work_cancel (kernel/task_work.c:190) [ 101.270578][ T166] ? kmem_cache_free (./include/linux/kasan.h:235 mm/slub.c:2689 mm/slub.c:6250 mm/slub.c:6377) [ 101.270769][ T166] do_exit (./include/linux/task_work.h:40 kernel/exit.c:976) [ 101.270921][ T166] ? exit_notify (kernel/exit.c:748) [ 101.271099][ T166] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 101.271289][ T166] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5535) [ 101.271467][ T166] ? __rwlock_init (kernel/locking/spinlock_debug.c:48) [ 101.271649][ T166] do_group_exit (kernel/exit.c:1119) [ 101.271836][ T166] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:470 (discriminator 2) kernel/locking/lockdep.c:4411 (discriminator 2)) [ 101.272050][ T166] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 101.272229][ T166] ? _raw_spin_unlock_irq (./include/linux/spinlock_api_smp.h:187 kernel/locking/spinlock.c:206) [ 101.272418][ T166] ? _raw_spin_unlock_irq (./include/linux/spinlock_api_smp.h:188 (discriminator 1) kernel/locking/spinlock.c:206 (discriminator 1)) [ 101.272599][ T166] get_signal (kernel/signal.c:3037) [ 101.272800][ T166] ? ptrace_signal (./include/linux/signal.h:87) [ 101.272986][ T166] arch_do_signal_or_restart (arch/x86/kernel/signal.c:337) [ 101.273168][ T166] ? __sys_recvmsg (net/socket.c:2993) [ 101.273355][ T166] ? get_sigframe_size (arch/x86/kernel/signal.c:233) [ 101.273536][ T166] ? __sys_recvmsg_sock (net/socket.c:2974) [ 101.273735][ T166] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 101.273918][ T166] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 101.274131][ T166] exit_to_user_mode_loop (kernel/entry/common.c:64 kernel/entry/common.c:98) [ 101.274318][ T166] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 101.274503][ T166] do_syscall_64 (./include/linux/irq-entry-common.h:207 ./include/linux/irq-entry-common.h:230 ./include/linux/entry-common.h:318 arch/x86/entry/syscall_64.c:100) [ 101.274697][ T166] ? irq_exit_rcu (kernel/softirq.c:754) [ 101.274878][ T166] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 101.275088][ T166] RIP: 0033:0x4c2d9e [ 101.275242][ T166] Code: Unable to access opcode bytes at 0x4c2d74. Code starting with the faulting instruction =========================================== [ 101.275465][ T166] RSP: 002b:00007fffc99b6510 EFLAGS: 00000202 ORIG_RAX: 000000000000002f [ 101.275727][ T166] RAX: 0000000000000050 RBX: 00007fffc99b65a0 RCX: 00000000004c2d9e [ 101.275972][ T166] RDX: 0000000000000000 RSI: 00007fffc99b65b0 RDI: 0000000000000007 [ 101.276216][ T166] RBP: 00007fffc99b6520 R08: 0000000000000000 R09: 0000000000000000 [ 101.276470][ T166] R10: 0000000000000000 R11: 0000000000000202 R12: 00007fffc99b6594 [ 101.276729][ T166] R13: 00007fffc99b7140 R14: 00007fffc99b66e0 R15: 0000000000543540 | [ 101.335264][ T66] ------------[ cut here ]------------ | [ 101.335627][ T66] WARNING: net/core/rtnetlink.c:4523 at rtmsg_ifinfo_build_skb+0x1a6/0x250, CPU#1: 1/66 | [ 101.335896][ T66] Modules linked in: | [ 101.336341][ T66] Tainted: [W]=WARN [ 101.336435][ T66] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 101.336595][ T66] Workqueue: netns cleanup_net [ 101.336808][ T66] RIP: 0010:rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4523 (discriminator 3)) [ 101.336986][ T66] Code: 89 fa 48 c1 ea 03 0f b6 14 02 48 89 f8 83 e0 07 83 c0 03 38 d0 7c 04 84 d2 75 79 48 8b 44 24 58 44 8b 48 08 e9 42 ff ff ff 90 <0f> 0b 90 ba 02 00 00 00 48 89 de 31 ff e8 38 ff f0 ff b9 a6 ff ff All code ======== 0: 89 fa mov %edi,%edx 2: 48 c1 ea 03 shr $0x3,%rdx 6: 0f b6 14 02 movzbl (%rdx,%rax,1),%edx a: 48 89 f8 mov %rdi,%rax d: 83 e0 07 and $0x7,%eax 10: 83 c0 03 add $0x3,%eax 13: 38 d0 cmp %dl,%al 15: 7c 04 jl 0x1b 17: 84 d2 test %dl,%dl 19: 75 79 jne 0x94 1b: 48 8b 44 24 58 mov 0x58(%rsp),%rax 20: 44 8b 48 08 mov 0x8(%rax),%r9d 24: e9 42 ff ff ff jmp 0xffffffffffffff6b 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: ba 02 00 00 00 mov $0x2,%edx 32: 48 89 de mov %rbx,%rsi 35: 31 ff xor %edi,%edi 37: e8 38 ff f0 ff call 0xfffffffffff0ff74 3c: b9 .byte 0xb9 3d: a6 cmpsb (%rdi),(%rsi) 3e: ff (bad) 3f: ff .byte 0xff Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: ba 02 00 00 00 mov $0x2,%edx 8: 48 89 de mov %rbx,%rsi b: 31 ff xor %edi,%edi d: e8 38 ff f0 ff call 0xfffffffffff0ff4a 12: b9 .byte 0xb9 13: a6 cmpsb (%rdi),(%rsi) 14: ff (bad) 15: ff .byte 0xff [ 101.337433][ T66] RSP: 0018:ffa0000000477878 EFLAGS: 00010286 [ 101.337590][ T66] RAX: 00000000ffffffa6 RBX: ff1100000cc42f40 RCX: 1ff400000008eed5 [ 101.337780][ T66] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ff1100000cc42ff0 [ 101.337963][ T66] RBP: ff110000057f9000 R08: 1fe22000019885ff R09: ff11000008c5d1d0 [ 101.338190][ T66] R10: 0000000000000001 R11: 0000000000000001 R12: 00000000ffffffff [ 101.338380][ T66] R13: 0000000000000000 R14: 0000000000000000 R15: dffffc0000000000 [ 101.338565][ T66] FS: 0000000000000000(0000) GS:ff11000099a53000(0000) knlGS:0000000000000000 [ 101.338803][ T66] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 101.338957][ T66] CR2: 00007fa74dc6e0a0 CR3: 0000000038b39006 CR4: 0000000000771ef0 [ 101.339139][ T66] PKRU: 55555554 [ 101.339230][ T66] Call Trace: [ 101.339328][ T66] [ 101.339406][ T66] unregister_netdevice_many_notify (net/core/dev.c:12439) [ 101.339568][ T66] ? unregister_netdevice_queued (./include/linux/list.h:404 (discriminator 3)) [ 101.339728][ T66] ? perf_trace_sched_switch (./include/linux/list.h:1021 (discriminator 3)) [ 101.339852][ T66] default_device_exit_batch (net/core/dev.c:12497 net/core/dev.c:13089) [ 101.339973][ T66] ? generic_xdp_install (./include/linux/netdevice.h:5659) [ 101.340093][ T66] ? ipmr_free_table (net/ipv4/ipmr.c:453) [ 101.340217][ T66] ? unregister_netdev (./include/net/net_namespace.h:419 (discriminator 7)) [ 101.340345][ T66] ? rtnl_is_locked (net/core/rtnetlink.c:169) [ 101.340465][ T66] ? nexthop_net_exit_rtnl (./include/linux/rtnetlink.h:150 (discriminator 1) net/ipv4/nexthop.c:4145 (discriminator 1)) [ 101.340590][ T66] ops_undo_list (net/core/net_namespace.c:205 net/core/net_namespace.c:252) [ 101.340721][ T66] ? rtnl_net_dumpid_one (net/core/net_namespace.c:1094) [ 101.340848][ T66] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5535) [ 101.340974][ T66] cleanup_net (net/core/net_namespace.c:702) [ 101.341095][ T66] ? net_passive_dec (./include/linux/llist.h:241) [ 101.341217][ T66] ? process_one_work (kernel/workqueue.c:3290 (discriminator 2)) [ 101.341369][ T66] ? lock_acquire (./include/trace/events/lock.h:24 (discriminator 22) kernel/locking/lockdep.c:5831 (discriminator 22)) [ 101.341524][ T66] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 101.341671][ T66] process_one_work (kernel/workqueue.c:3314) [ 101.341804][ T66] ? pwq_dec_nr_in_flight (kernel/workqueue.c:1822 (discriminator 4)) [ 101.341944][ T66] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 101.342070][ T66] worker_thread (kernel/workqueue.c:3397 kernel/workqueue.c:3478) [ 101.342193][ T66] ? rescuer_thread (./include/linux/list.h:404 (discriminator 3)) [ 101.342334][ T66] ? __kthread_parkme (./include/linux/instrumented.h:82 ./include/asm-generic/bitops/instrumented-non-atomic.h:141 kernel/kthread.c:272) [ 101.342510][ T66] ? rescuer_thread (./include/linux/list.h:404 (discriminator 3)) [ 101.342632][ T66] kthread (kernel/kthread.c:436) [ 101.342728][ T66] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 101.342944][ T66] ? kthread_affine_node (kernel/kthread.c:378) [ 101.343085][ T66] ret_from_fork (arch/x86/kernel/process.c:158) [ 101.343212][ T66] ? arch_exit_to_user_mode_prepare.isra.0 (arch/x86/entry/syscall_64.c:37) [ 101.343370][ T66] ? __switch_to (arch/x86/kernel/process_64.c:403 arch/x86/kernel/process_64.c:663) [ 101.343494][ T66] ? kthread_affine_node (kernel/kthread.c:378) Finger prints: rtmsg_ifinfo_build_skb:rtmsg_ifinfo:register_netdevice:register_netdev:loopback_net_init rtmsg_ifinfo_build_skb:rtmsg_ifinfo:register_netdevice:__tun_chr_ioctl:__x64_sys_ioctl rtmsg_ifinfo_build_skb:unregister_netdevice_many_notify:unregister_netdevice_queue:__tun_detach:tun_chr_close rtmsg_ifinfo_build_skb:rtmsg_ifinfo:netif_close_many:unregister_netdevice_many_notify:unregister_netdevice_queue rtmsg_ifinfo_build_skb:rtnetlink_event:notifier_call_chain:netdev_update_features:__tun_chr_ioctl rtmsg_ifinfo_build_skb:rtmsg_ifinfo:__dev_notify_flags:netif_change_flags:dev_change_flags rtmsg_ifinfo_build_skb:unregister_netdevice_many_notify:default_device_exit_batch:ops_undo_list:cleanup_net