====================================== | [ 819.974052][T11808] ================================================================== | [ 819.974331][T11808] BUG: KASAN: slab-out-of-bounds in snapshot_page (mm/util.c:1353) | [ 819.974520][T11808] Read of size 128 at addr ff1100001c44fa40 by task ncdevmem/11808 | [ 819.974702][T11808] [ 819.974771][T11808] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 819.974773][T11808] Call Trace: [ 819.974775][T11808] [ 819.974782][T11808] dump_stack_lvl (lib/dump_stack.c:94 lib/dump_stack.c:120) [ 819.974787][T11808] print_address_description.constprop.0 (mm/kasan/report.c:378) [ 819.974792][T11808] print_report (mm/kasan/report.c:482) [ 819.974794][T11808] ? __virt_addr_valid (./include/linux/rcupdate.h:937 ./include/linux/mmzone.h:2281 arch/x86/mm/physaddr.c:54) [ 819.974798][T11808] ? __virt_addr_valid (./include/linux/rcupdate.h:963 (discriminator 1) ./include/linux/mmzone.h:2291 (discriminator 1) arch/x86/mm/physaddr.c:54 (discriminator 1)) [ 819.974799][T11808] kasan_report (mm/kasan/report.c:595) [ 819.974803][T11808] ? snapshot_page (mm/util.c:1353) [ 819.974805][T11808] ? snapshot_page (mm/util.c:1353) [ 819.974807][T11808] kasan_check_range (mm/kasan/generic.c:186 mm/kasan/generic.c:200) [ 819.974809][T11808] __asan_memcpy (mm/kasan/shadow.c:105 (discriminator 1)) [ 819.974811][T11808] snapshot_page (mm/util.c:1353) [ 819.974813][T11808] ? fourcc_string (lib/vsprintf.c:1813 (discriminator 2)) [ 819.974817][T11808] __dump_page (mm/debug.c:134) [ 819.974820][T11808] ? __dump_folio (./arch/x86/include/asm/atomic.h:23) [ 819.974825][T11808] ? net_devmem_alloc_dmabuf (./include/linux/instrumented.h:97 ./include/linux/atomic/atomic-instrumented.h:3223 net/core/devmem.c:107) [ 819.974828][T11808] dump_page (mm/debug.c:146) [ 819.974830][T11808] page_pool_set_pp_info (./include/linux/page-flags.h:1062 (discriminator 8) net/core/page_pool.c:716 (discriminator 8)) [ 819.974833][T11808] mp_dmabuf_devmem_alloc_netmems (net/core/devmem.c:464) [ 819.974835][T11808] ? page_pool_alloc_netmems (net/core/page_pool.c:441 net/core/page_pool.c:659) [ 819.974838][T11808] fbnic_fill_bdq (./include/net/page_pool/helpers.h:160 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:906) [ 819.974842][T11808] __fbnic_nv_restart (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2470 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2874) [ 819.974844][T11808] fbnic_queue_start (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2903) [ 819.974846][T11808] netdev_rx_queue_reconfig (net/core/netdev_rx_queue.c:137) [ 819.974849][T11808] __netif_mp_open_rxq (net/core/netdev_rx_queue.c:234) [ 819.974851][T11808] ? netdev_rx_queue_restart (net/core/netdev_rx_queue.c:184) [ 819.974853][T11808] ? do_raw_spin_unlock (./include/linux/instrumented.h:82 ./include/linux/atomic/atomic-instrumented.h:32 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 819.974857][T11808] net_devmem_bind_dmabuf_to_queue (net/core/devmem.c:166) [ 819.974858][T11808] ? net_devmem_unbind_dmabuf (net/core/devmem.c:152) [ 819.974861][T11808] netdev_nl_bind_rx_doit (net/core/netdev-genl.c:1088) [ 819.974865][T11808] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 819.974867][T11808] ? __nla_parse (lib/nlattr.c:732) [ 819.974871][T11808] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:789 (discriminator 2) net/netlink/genetlink.c:944 (discriminator 2)) [ 819.974874][T11808] genl_family_rcv_msg_doit (net/netlink/genetlink.c:1114) [ 819.974876][T11808] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:785 (discriminator 2)) [ 819.974878][T11808] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 819.974881][T11808] ? cap_capable (./include/trace/events/capability.h:26 (discriminator 22) security/commoncap.c:130 (discriminator 22)) [ 819.974885][T11808] genl_family_rcv_msg (net/netlink/genetlink.c:1194) [ 819.974887][T11808] ? genl_family_rcv_msg_dumpit (net/netlink/genetlink.c:1079) [ 819.974888][T11808] ? rcu_lockdep_current_cpu_online (kernel/rcu/tree.c:4040 (discriminator 3) kernel/rcu/tree.c:4032 (discriminator 3)) [ 819.974890][T11808] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 819.974892][T11808] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 819.974895][T11808] genl_rcv_msg (net/netlink/genetlink.c:1209) [ 819.974897][T11808] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 819.974900][T11808] ? genl_family_rcv_msg (net/netlink/genetlink.c:1136 (discriminator 2)) [ 819.974901][T11808] ? netlink_ack (./include/linux/skbuff.h:2717) [ 819.974905][T11808] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) ./include/net/netns/generic.h:48 (discriminator 2) net/netlink/af_netlink.c:333 (discriminator 2)) [ 819.974907][T11808] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) net/netlink/af_netlink.c:340 (discriminator 2)) [ 819.974909][T11808] genl_rcv (net/netlink/genetlink.c:1218) [ 819.974910][T11808] netlink_unicast (net/netlink/af_netlink.c:1318 net/netlink/af_netlink.c:1344) [ 819.974913][T11808] ? netlink_attachskb (./arch/x86/include/asm/bitops.h:202 (discriminator 1)) [ 819.974915][T11808] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 819.974917][T11808] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:179 (discriminator 1) kernel/locking/spinlock.c:198 (discriminator 1)) [ 819.974919][T11808] ? __wake_up (./include/linux/spinlock.h:408 (discriminator 3) kernel/sched/wait.c:127 (discriminator 3) kernel/sched/wait.c:146 (discriminator 3)) [ 819.974923][T11808] netlink_sendmsg (net/netlink/af_netlink.c:1894) [ 819.974925][T11808] ? netlink_unicast (./include/net/net_namespace.h:419 (discriminator 7)) [ 819.974927][T11808] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 819.974929][T11808] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 819.974932][T11808] __sys_sendto (net/socket.c:787 (discriminator 4) net/socket.c:802 (discriminator 4) net/socket.c:2265 (discriminator 4)) [ 819.974935][T11808] ? __ia32_sys_getpeername (net/socket.c:2219) [ 819.974937][T11808] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 819.974940][T11808] ? __ia32_sys_connect (net/socket.c:2170) [ 819.974941][T11808] ? __sys_bind (net/socket.c:1933 (discriminator 3) net/socket.c:1964 (discriminator 3)) [ 819.974945][T11808] __x64_sys_sendto (net/socket.c:2272 net/socket.c:2268 net/socket.c:2268) [ 819.974946][T11808] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 819.974949][T11808] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 819.974950][T11808] ? do_syscall_64 (./include/linux/entry-common.h:177 arch/x86/entry/syscall_64.c:89) [ 819.974953][T11808] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 819.974954][T11808] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 819.974956][T11808] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 819.974957][T11808] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 819.974960][T11808] RIP: 0033:0x7f187fe550ee [ 819.974964][T11808] Code: 4d 89 d8 e8 94 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 03 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 94 bd 00 00 call 0xbd9c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 03 ff ff ff call 0xffffffffffffff3c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 03 ff ff ff call 0xffffffffffffff12 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 819.974966][T11808] RSP: 002b:00007ffdb24a5a50 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 819.974971][T11808] RAX: ffffffffffffffda RBX: 00007ffdb24a5ac0 RCX: 00007f187fe550ee [ 819.974972][T11808] RDX: 0000000000000038 RSI: 0000000003d26988 RDI: 0000000000000006 [ 819.974973][T11808] RBP: 00007ffdb24a5a60 R08: 0000000000000000 R09: 0000000000000000 [ 819.974974][T11808] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000003d26988 [ 819.974975][T11808] R13: 0000000003d26720 R14: 00007f1880026000 R15: 000000000042ee00 | [ 819.989537][T11808] ------------[ cut here ]------------ | [ 819.989633][T11808] kernel BUG at ./include/linux/page-flags.h:1062! | [ 819.989758][T11808] Oops: invalid opcode: 0000 [#1] SMP KASAN | [ 819.990089][T11808] Tainted: [B]=BAD_PAGE [ 819.990164][T11808] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 819.990372][T11808] RIP: 0010:page_pool_set_pp_info (./include/linux/page-flags.h:1062 (discriminator 9) net/core/page_pool.c:716 (discriminator 9)) [ 819.990493][T11808] Code: 80 3c 11 00 0f 84 12 ff ff ff 89 04 24 e8 12 de a0 fe 8b 04 24 e9 02 ff ff ff 48 c7 c6 60 98 ad 96 48 89 df e8 6b d0 89 fe 90 <0f> 0b e8 f3 dc a0 fe e9 58 ff ff ff e8 29 dd a0 fe e9 a9 fe ff ff All code ======== 0: 80 3c 11 00 cmpb $0x0,(%rcx,%rdx,1) 4: 0f 84 12 ff ff ff je 0xffffffffffffff1c a: 89 04 24 mov %eax,(%rsp) d: e8 12 de a0 fe call 0xfffffffffea0de24 12: 8b 04 24 mov (%rsp),%eax 15: e9 02 ff ff ff jmp 0xffffffffffffff1c 1a: 48 c7 c6 60 98 ad 96 mov $0xffffffff96ad9860,%rsi 21: 48 89 df mov %rbx,%rdi 24: e8 6b d0 89 fe call 0xfffffffffe89d094 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: e8 f3 dc a0 fe call 0xfffffffffea0dd24 31: e9 58 ff ff ff jmp 0xffffffffffffff8e 36: e8 29 dd a0 fe call 0xfffffffffea0dd64 3b: e9 a9 fe ff ff jmp 0xfffffffffffffee9 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: e8 f3 dc a0 fe call 0xfffffffffea0dcfa 7: e9 58 ff ff ff jmp 0xffffffffffffff64 c: e8 29 dd a0 fe call 0xfffffffffea0dd3a 11: e9 a9 fe ff ff jmp 0xfffffffffffffebf [ 819.990860][T11808] RSP: 0018:ffa000000b2df368 EFLAGS: 00010286 [ 819.990981][T11808] RAX: 0000000000000096 RBX: ff1100001c44fa40 RCX: 0000000000000000 [ 819.991123][T11808] RDX: 0000000000000096 RSI: 1ffffffff3457b44 RDI: fff3fc000165be58 [ 819.991262][T11808] RBP: ff1100000588a000 R08: ffffffff93dbf47a R09: 1ffffffff2efea44 [ 819.991402][T11808] R10: 0000000000000003 R11: fffffbfff2efea45 R12: ff1100001c44fa41 [ 819.991546][T11808] R13: 000000000000006b R14: 0000000000000002 R15: 0000000000000000 [ 819.991684][T11808] FS: 00007f187fde2740(0000) GS:ff110000cc2c6000(0000) knlGS:0000000000000000 [ 819.991849][T11808] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 819.991972][T11808] CR2: 0000557d77b11608 CR3: 0000000019316004 CR4: 0000000000771ef0 [ 819.992114][T11808] PKRU: 55555554 [ 819.992185][T11808] Call Trace: [ 819.992256][T11808] [ 819.992305][T11808] mp_dmabuf_devmem_alloc_netmems (net/core/devmem.c:464) [ 819.992420][T11808] ? page_pool_alloc_netmems (net/core/page_pool.c:441 net/core/page_pool.c:659) [ 819.992510][T11808] fbnic_fill_bdq (./include/net/page_pool/helpers.h:160 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:906) [ 819.992605][T11808] __fbnic_nv_restart (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2470 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2874) [ 819.992697][T11808] fbnic_queue_start (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2903) [ 819.992789][T11808] netdev_rx_queue_reconfig (net/core/netdev_rx_queue.c:137) [ 819.992884][T11808] __netif_mp_open_rxq (net/core/netdev_rx_queue.c:234) [ 819.992977][T11808] ? netdev_rx_queue_restart (net/core/netdev_rx_queue.c:184) [ 819.993071][T11808] ? do_raw_spin_unlock (./include/linux/instrumented.h:82 ./include/linux/atomic/atomic-instrumented.h:32 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 819.993166][T11808] net_devmem_bind_dmabuf_to_queue (net/core/devmem.c:166) [ 819.993280][T11808] ? net_devmem_unbind_dmabuf (net/core/devmem.c:152) [ 819.993374][T11808] netdev_nl_bind_rx_doit (net/core/netdev-genl.c:1088) [ 819.993470][T11808] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 819.993587][T11808] ? __nla_parse (lib/nlattr.c:732) [ 819.993679][T11808] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:789 (discriminator 2) net/netlink/genetlink.c:944 (discriminator 2)) [ 819.993802][T11808] genl_family_rcv_msg_doit (net/netlink/genetlink.c:1114) [ 819.993895][T11808] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:785 (discriminator 2)) [ 819.994013][T11808] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 819.994107][T11808] ? cap_capable (./include/trace/events/capability.h:26 (discriminator 22) security/commoncap.c:130 (discriminator 22)) [ 819.994200][T11808] genl_family_rcv_msg (net/netlink/genetlink.c:1194) [ 819.994296][T11808] ? genl_family_rcv_msg_dumpit (net/netlink/genetlink.c:1079) [ 819.994412][T11808] ? rcu_lockdep_current_cpu_online (kernel/rcu/tree.c:4040 (discriminator 3) kernel/rcu/tree.c:4032 (discriminator 3)) [ 819.994526][T11808] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 819.994644][T11808] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 819.994736][T11808] genl_rcv_msg (net/netlink/genetlink.c:1209) [ 819.994832][T11808] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 819.994925][T11808] ? genl_family_rcv_msg (net/netlink/genetlink.c:1136 (discriminator 2)) [ 819.995016][T11808] ? netlink_ack (./include/linux/skbuff.h:2717) [ 819.995110][T11808] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) ./include/net/netns/generic.h:48 (discriminator 2) net/netlink/af_netlink.c:333 (discriminator 2)) [ 819.995204][T11808] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) net/netlink/af_netlink.c:340 (discriminator 2)) [ 819.995302][T11808] genl_rcv (net/netlink/genetlink.c:1218) [ 819.995373][T11808] netlink_unicast (net/netlink/af_netlink.c:1318 net/netlink/af_netlink.c:1344) [ 819.995468][T11808] ? netlink_attachskb (./arch/x86/include/asm/bitops.h:202 (discriminator 1)) [ 819.995562][T11808] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 819.995655][T11808] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:179 (discriminator 1) kernel/locking/spinlock.c:198 (discriminator 1)) [ 819.995767][T11808] ? __wake_up (./include/linux/spinlock.h:408 (discriminator 3) kernel/sched/wait.c:127 (discriminator 3) kernel/sched/wait.c:146 (discriminator 3)) [ 819.995842][T11808] netlink_sendmsg (net/netlink/af_netlink.c:1894) [ 819.995938][T11808] ? netlink_unicast (./include/net/net_namespace.h:419 (discriminator 7)) [ 819.996031][T11808] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 819.996125][T11808] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 819.996219][T11808] __sys_sendto (net/socket.c:787 (discriminator 4) net/socket.c:802 (discriminator 4) net/socket.c:2265 (discriminator 4)) [ 819.996311][T11808] ? __ia32_sys_getpeername (net/socket.c:2219) [ 819.996403][T11808] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 819.996497][T11808] ? __ia32_sys_connect (net/socket.c:2170) [ 819.996588][T11808] ? __sys_bind (net/socket.c:1933 (discriminator 3) net/socket.c:1964 (discriminator 3)) [ 819.996678][T11808] __x64_sys_sendto (net/socket.c:2272 net/socket.c:2268 net/socket.c:2268) [ 819.996772][T11808] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 819.996888][T11808] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 819.996979][T11808] ? do_syscall_64 (./include/linux/entry-common.h:177 arch/x86/entry/syscall_64.c:89) [ 819.997072][T11808] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 819.997167][T11808] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 819.997259][T11808] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 819.997353][T11808] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 819.997470][T11808] RIP: 0033:0x7f187fe550ee [ 819.997566][T11808] Code: 4d 89 d8 e8 94 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 03 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 94 bd 00 00 call 0xbd9c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 03 ff ff ff call 0xffffffffffffff3c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 03 ff ff ff call 0xffffffffffffff12 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 819.997899][T11808] RSP: 002b:00007ffdb24a5a50 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 819.998042][T11808] RAX: ffffffffffffffda RBX: 00007ffdb24a5ac0 RCX: 00007f187fe550ee [ 819.998184][T11808] RDX: 0000000000000038 RSI: 0000000003d26988 RDI: 0000000000000006 [ 819.998326][T11808] RBP: 00007ffdb24a5a60 R08: 0000000000000000 R09: 0000000000000000 [ 819.998469][T11808] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000003d26988 Finger prints: page_pool_set_pp_info:mp_dmabuf_devmem_alloc_netmems:fbnic_fill_bdq:__fbnic_nv_restart:fbnic_queue_start print_report:kasan_report:kasan_check_range:__asan_memcpy:snapshot_page